Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x9mq-8vwj-w2rx

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

The audiofile Audio File Library 0.3.6 has a NULL pointer dereference bug in ModuleState::setup in modules/ModuleState.cpp, which allows an attacker to cause a denial of service via a crafted caf file, as demonstrated by sfconvert.

The audiofile Audio File Library 0.3.6 has a NULL pointer dereference bug in ModuleState::setup in modules/ModuleState.cpp, which allows an attacker to cause a denial of service via a crafted caf file, as demonstrated by sfconvert.

EPSS

Процентиль: 90%
0.06018
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 7 лет назад

The audiofile Audio File Library 0.3.6 has a NULL pointer dereference bug in ModuleState::setup in modules/ModuleState.cpp, which allows an attacker to cause a denial of service via a crafted caf file, as demonstrated by sfconvert.

CVSS3: 5.3
redhat
больше 7 лет назад

The audiofile Audio File Library 0.3.6 has a NULL pointer dereference bug in ModuleState::setup in modules/ModuleState.cpp, which allows an attacker to cause a denial of service via a crafted caf file, as demonstrated by sfconvert.

CVSS3: 6.5
nvd
больше 7 лет назад

The audiofile Audio File Library 0.3.6 has a NULL pointer dereference bug in ModuleState::setup in modules/ModuleState.cpp, which allows an attacker to cause a denial of service via a crafted caf file, as demonstrated by sfconvert.

CVSS3: 6.5
debian
больше 7 лет назад

The audiofile Audio File Library 0.3.6 has a NULL pointer dereference ...

suse-cvrf
почти 7 лет назад

Security update for audiofile

EPSS

Процентиль: 90%
0.06018
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-476