Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pr4h-24v3-fp67

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

An issue was discovered in WavPack 5.1.0 and earlier. The WAV parser component contains a vulnerability that allows writing to memory because ParseRiffHeaderConfig in riff.c does not reject multiple format chunks.

An issue was discovered in WavPack 5.1.0 and earlier. The WAV parser component contains a vulnerability that allows writing to memory because ParseRiffHeaderConfig in riff.c does not reject multiple format chunks.

EPSS

Процентиль: 80%
0.02034
Низкий

7.8 High

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 8 лет назад

An issue was discovered in WavPack 5.1.0 and earlier. The WAV parser component contains a vulnerability that allows writing to memory because ParseRiffHeaderConfig in riff.c does not reject multiple format chunks.

CVSS3: 7.8
redhat
больше 8 лет назад

An issue was discovered in WavPack 5.1.0 and earlier. The WAV parser component contains a vulnerability that allows writing to memory because ParseRiffHeaderConfig in riff.c does not reject multiple format chunks.

CVSS3: 7.8
nvd
больше 8 лет назад

An issue was discovered in WavPack 5.1.0 and earlier. The WAV parser component contains a vulnerability that allows writing to memory because ParseRiffHeaderConfig in riff.c does not reject multiple format chunks.

CVSS3: 7.8
debian
больше 8 лет назад

An issue was discovered in WavPack 5.1.0 and earlier. The WAV parser c ...

suse-cvrf
больше 5 лет назад

Security update for wavpack

EPSS

Процентиль: 80%
0.02034
Низкий

7.8 High

CVSS3

Дефекты

CWE-787