Описание
Heap-based buffer overflow in libsndfile 1.0.25 allows remote attackers to have unspecified impact via the headindex value in the header in an AIFF file.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 6 | libsndfile | Will not fix | ||
| Red Hat Enterprise Linux 6 | pulseaudio | Not affected | ||
| Red Hat Enterprise Linux 7 | libsndfile | Will not fix | ||
| Red Hat Enterprise Linux 7 | pulseaudio | Not affected |
Показывать по
10
Дополнительная информация
Статус:
Moderate
Дефект:
CWE-122
https://bugzilla.redhat.com/show_bug.cgi?id=1277897libsndfile: Heap overflow vulnerability when parsing specially crafted AIFF header
EPSS
Процентиль: 98%
0.58549
Средний
5.8 Medium
CVSS2
Связанные уязвимости
ubuntu
около 10 лет назад
Heap-based buffer overflow in libsndfile 1.0.25 allows remote attackers to have unspecified impact via the headindex value in the header in an AIFF file.
nvd
около 10 лет назад
Heap-based buffer overflow in libsndfile 1.0.25 allows remote attackers to have unspecified impact via the headindex value in the header in an AIFF file.
debian
около 10 лет назад
Heap-based buffer overflow in libsndfile 1.0.25 allows remote attacker ...
github
больше 3 лет назад
Heap-based buffer overflow in libsndfile 1.0.25 allows remote attackers to have unspecified impact via the headindex value in the header in an AIFF file.
EPSS
Процентиль: 98%
0.58549
Средний
5.8 Medium
CVSS2