Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-14324

Опубликовано: 01 июл. 2026
Источник: debian
EPSS Низкий

Описание

RAOP module accepts unbounded Content-Length values and does not check the pw_array_add() return.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
pipewirefixed1.6.8-1package
pipewireno-dsatrixiepackage
pipewirepostponedbookwormpackage
pipewirenot-affectedbullseyepackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=2495903

  • https://gitlab.freedesktop.org/pipewire/pipewire/-/work_items/5352

  • Fixed by: https://gitlab.freedesktop.org/pipewire/pipewire/-/commit/87ee525b0124755ccab99d873ddf85d9d4969f73 (master)

  • Fixed by: https://gitlab.freedesktop.org/pipewire/pipewire/-/commit/c7fd5f935083f367d05d8f78ccbbd6e0dbc6fb07 (1.6.8)

EPSS

Процентиль: 7%
0.00175
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 2 месяцев назад

RAOP module accepts unbounded Content-Length values and does not check the pw_array_add() return.

CVSS3: 6.5
redhat
около 2 месяцев назад

RAOP module accepts unbounded Content-Length values and does not check the pw_array_add() return.

CVSS3: 6.5
nvd
около 2 месяцев назад

RAOP module accepts unbounded Content-Length values and does not check the pw_array_add() return.

CVSS3: 6.5
github
около 2 месяцев назад

RAOP module accepts unbounded Content-Length values and does not check the pw_array_add() return.

EPSS

Процентиль: 7%
0.00175
Низкий