Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-10170

Опубликовано: 14 мар. 2017
Источник: debian

Описание

The WriteCaffHeader function in cli/caff.c in Wavpack before 5.1.0 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted WV file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
wavpackfixed5.0.0-2package
wavpacknot-affectedjessiepackage
wavpacknot-affectedwheezypackage

Примечания

  • https://sourceforge.net/p/wavpack/mailman/message/35561921/

  • Fixed by: https://github.com/dbry/WavPack/commit/4bc05fc490b66ef2d45b1de26abf1455b486b0dc (5.1.0)

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 9 лет назад

The WriteCaffHeader function in cli/caff.c in Wavpack before 5.1.0 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted WV file.

CVSS3: 4.4
redhat
около 9 лет назад

The WriteCaffHeader function in cli/caff.c in Wavpack before 5.1.0 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted WV file.

CVSS3: 5.5
nvd
почти 9 лет назад

The WriteCaffHeader function in cli/caff.c in Wavpack before 5.1.0 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted WV file.

CVSS3: 5.5
github
больше 3 лет назад

The WriteCaffHeader function in cli/caff.c in Wavpack before 5.1.0 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted WV file.

suse-cvrf
почти 8 лет назад

Security update for wavpack