Описание
In MPD before 0.23.8, as used on Automotive Grade Linux and other platforms, the PipeWire output plugin mishandles a Drain call in certain situations involving truncated files. Eventually there is an assertion failure in libmpdclient because libqtappfw passes in a NULL pointer.
Ссылки
- Patch
- Patch
- Not Applicable
- Exploit
- Patch
- Patch
- Not Applicable
- Exploit
Уязвимые конфигурации
Конфигурация 1Версия до 0.23.8 (исключая)
cpe:2.3:a:linuxfoundation:automotive_grade_linux:*:*:*:*:*:*:*:*
EPSS
Процентиль: 27%
0.00098
Низкий
7.5 High
CVSS3
Дефекты
CWE-617
CWE-617
Связанные уязвимости
CVSS3: 7.5
github
почти 3 года назад
In MPD before 0.23.8, as used on Automotive Grade Linux and other platforms, the PipeWire output plugin mishandles a Drain call in certain situations involving truncated files. Eventually there is an assertion failure in libmpdclient because libqtappfw passes in a NULL pointer.
EPSS
Процентиль: 27%
0.00098
Низкий
7.5 High
CVSS3
Дефекты
CWE-617
CWE-617