Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2008-5824

Опубликовано: 30 дек. 2008
Источник: redhat
CVSS2: 3.7
EPSS Средний

Описание

Heap-based buffer overflow in msadpcm.c in libaudiofile in audiofile 0.2.6 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted WAV file.

Отчет

Red Hat Product Security has rated this issue as having Low security impact. This issue is not currently planned to be addressed in future updates. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 4audiofileWill not fix
Red Hat Enterprise Linux 5audiofileWill not fix
Red Hat Enterprise Linux 6audiofileWill not fix

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-122
https://bugzilla.redhat.com/show_bug.cgi?id=479966audiofile: heap-based overflow in Microsoft ADPCM compression module (app crash, arb. code execution)

EPSS

Процентиль: 93%
0.11128
Средний

3.7 Low

CVSS2

Связанные уязвимости

ubuntu
почти 17 лет назад

Heap-based buffer overflow in msadpcm.c in libaudiofile in audiofile 0.2.6 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted WAV file.

nvd
почти 17 лет назад

Heap-based buffer overflow in msadpcm.c in libaudiofile in audiofile 0.2.6 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted WAV file.

debian
почти 17 лет назад

Heap-based buffer overflow in msadpcm.c in libaudiofile in audiofile 0 ...

github
больше 3 лет назад

Heap-based buffer overflow in msadpcm.c in libaudiofile in audiofile 0.2.6 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted WAV file.

fstec
почти 17 лет назад

Уязвимость библиотеки libaudiofile, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код

EPSS

Процентиль: 93%
0.11128
Средний

3.7 Low

CVSS2