Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2022-8139

Опубликовано: 22 нояб. 2022
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2022-8139: wavpack security update (LOW)

[5.4.0-5]

  • CVE-2021-44269 wavpack: heap Out-of-bounds Read
  • Resolves: CVE-2021-44269

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

wavpack

5.4.0-5.el9

wavpack-devel

5.4.0-5.el9

Oracle Linux x86_64

wavpack

5.4.0-5.el9

wavpack-devel

5.4.0-5.el9

Связанные CVE

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 4 года назад

An out of bounds read was found in Wavpack 5.4.0 in processing *.WAV files. This issue triggered in function WavpackPackSamples of file src/pack_utils.c, tainted variable cnt is too large, that makes pointer sptr read beyond heap bound.

CVSS3: 3.5
redhat
около 4 лет назад

An out of bounds read was found in Wavpack 5.4.0 in processing *.WAV files. This issue triggered in function WavpackPackSamples of file src/pack_utils.c, tainted variable cnt is too large, that makes pointer sptr read beyond heap bound.

CVSS3: 5.5
nvd
почти 4 года назад

An out of bounds read was found in Wavpack 5.4.0 in processing *.WAV files. This issue triggered in function WavpackPackSamples of file src/pack_utils.c, tainted variable cnt is too large, that makes pointer sptr read beyond heap bound.

CVSS3: 5.5
msrc
почти 4 года назад

An out of bounds read was found in Wavpack 5.4.0 in processing *.WAV files. This issue triggered in function WavpackPackSamples of file src/pack_utils.c tainted variable cnt is too large that makes pointer sptr read beyond heap bound.

CVSS3: 5.5
debian
почти 4 года назад

An out of bounds read was found in Wavpack 5.4.0 in processing *.WAV f ...