Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7rc9-5vxf-3h3m

Опубликовано: 27 фев. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

In MPD before 0.23.8, as used on Automotive Grade Linux and other platforms, the PipeWire output plugin mishandles a Drain call in certain situations involving truncated files. Eventually there is an assertion failure in libmpdclient because libqtappfw passes in a NULL pointer.

In MPD before 0.23.8, as used on Automotive Grade Linux and other platforms, the PipeWire output plugin mishandles a Drain call in certain situations involving truncated files. Eventually there is an assertion failure in libmpdclient because libqtappfw passes in a NULL pointer.

EPSS

Процентиль: 27%
0.00098
Низкий

7.5 High

CVSS3

Дефекты

CWE-476
CWE-617

Связанные уязвимости

CVSS3: 7.5
nvd
почти 3 года назад

In MPD before 0.23.8, as used on Automotive Grade Linux and other platforms, the PipeWire output plugin mishandles a Drain call in certain situations involving truncated files. Eventually there is an assertion failure in libmpdclient because libqtappfw passes in a NULL pointer.

EPSS

Процентиль: 27%
0.00098
Низкий

7.5 High

CVSS3

Дефекты

CWE-476
CWE-617