Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3x58-8qmv-wqw5

Опубликовано: 13 мая 2022
Источник: github
Github: Прошло ревью
CVSS4: 8.7
CVSS3: 8.8

Описание

Aubio is vulnerable to out of bound read when samplerate > 50kHz

An issue was discovered in aubio 0.4.6. A buffer over-read can occur in new_aubio_pitchyinfft in pitch/pitchyinfft.c when the samplerate of the input file is larger than 50kHz.

Пакеты

Наименование

aubio

pip
Затронутые версииВерсия исправления

< 0.4.7

0.4.7

EPSS

Процентиль: 63%
0.00448
Низкий

8.7 High

CVSS4

8.8 High

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 7 лет назад

An issue was discovered in aubio 0.4.6. A buffer over-read can occur in new_aubio_pitchyinfft in pitch/pitchyinfft.c, as demonstrated by aubionotes.

CVSS3: 8.8
nvd
больше 7 лет назад

An issue was discovered in aubio 0.4.6. A buffer over-read can occur in new_aubio_pitchyinfft in pitch/pitchyinfft.c, as demonstrated by aubionotes.

CVSS3: 8.8
debian
больше 7 лет назад

An issue was discovered in aubio 0.4.6. A buffer over-read can occur i ...

suse-cvrf
больше 7 лет назад

Security update for aubio

EPSS

Процентиль: 63%
0.00448
Низкий

8.7 High

CVSS4

8.8 High

CVSS3

Дефекты

CWE-125