Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-7747

Опубликовано: 19 фев. 2020
Источник: nvd
CVSS3: 8.8
CVSS2: 6.8
EPSS Средний

Описание

Buffer overflow in the afReadFrames function in audiofile (aka libaudiofile and Audio File Library) allows user-assisted remote attackers to cause a denial of service (program crash) or possibly execute arbitrary code via a crafted audio file, as demonstrated by sixteen-stereo-to-eight-mono.c.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:15.04:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:15.10:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:23:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:a:audio_file_library_project:audio_file_library:*:*:*:*:*:*:*:*
Версия до 0.3.6 (исключая)

EPSS

Процентиль: 97%
0.40009
Средний

8.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 5 лет назад

Buffer overflow in the afReadFrames function in audiofile (aka libaudiofile and Audio File Library) allows user-assisted remote attackers to cause a denial of service (program crash) or possibly execute arbitrary code via a crafted audio file, as demonstrated by sixteen-stereo-to-eight-mono.c.

redhat
больше 9 лет назад

Buffer overflow in the afReadFrames function in audiofile (aka libaudiofile and Audio File Library) allows user-assisted remote attackers to cause a denial of service (program crash) or possibly execute arbitrary code via a crafted audio file, as demonstrated by sixteen-stereo-to-eight-mono.c.

CVSS3: 8.8
msrc
11 месяцев назад

Описание отсутствует

CVSS3: 8.8
debian
больше 5 лет назад

Buffer overflow in the afReadFrames function in audiofile (aka libaudi ...

suse-cvrf
больше 9 лет назад

Security update for audiofile

EPSS

Процентиль: 97%
0.40009
Средний

8.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-120