Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-14245

Опубликовано: 21 сент. 2017
Источник: debian
EPSS Низкий

Описание

An out of bounds read in the function d2alaw_array() in alaw.c of libsndfile 1.0.28 may lead to a remote DoS attack or information disclosure, related to mishandling of the NAN and INFINITY floating-point values.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libsndfilefixed1.0.28-5package
libsndfileno-dsawheezypackage

Примечания

  • https://github.com/erikd/libsndfile/issues/317

  • https://github.com/erikd/libsndfile/commit/8ddc442d539ca775d80cdbc7af17a718634a743f

EPSS

Процентиль: 62%
0.00428
Низкий

Связанные уязвимости

CVSS3: 8.1
ubuntu
почти 8 лет назад

An out of bounds read in the function d2alaw_array() in alaw.c of libsndfile 1.0.28 may lead to a remote DoS attack or information disclosure, related to mishandling of the NAN and INFINITY floating-point values.

CVSS3: 3.3
redhat
почти 8 лет назад

An out of bounds read in the function d2alaw_array() in alaw.c of libsndfile 1.0.28 may lead to a remote DoS attack or information disclosure, related to mishandling of the NAN and INFINITY floating-point values.

CVSS3: 8.1
nvd
почти 8 лет назад

An out of bounds read in the function d2alaw_array() in alaw.c of libsndfile 1.0.28 may lead to a remote DoS attack or information disclosure, related to mishandling of the NAN and INFINITY floating-point values.

CVSS3: 8.1
msrc
больше 4 лет назад

Описание отсутствует

CVSS3: 8.1
github
около 3 лет назад

An out of bounds read in the function d2alaw_array() in alaw.c of libsndfile 1.0.28 may lead to a remote DoS attack or information disclosure, related to mishandling of the NAN and INFINITY floating-point values.

EPSS

Процентиль: 62%
0.00428
Низкий