Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-17096

Опубликовано: 17 сент. 2018
Источник: redhat
CVSS3: 6.5
EPSS Низкий

Описание

The BPMDetect class in BPMDetect.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (assertion failure and application exit), as demonstrated by SoundStretch.

The SoundTouch library is vulnerable to a reachable assertion in BPMDetect:::BPMDetect() function that can cause a denial of service to applications using this library for processing the untrusted file input.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 7soundtouchFix deferred
Red Hat Enterprise Linux 8soundtouchFix deferred

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-119
https://bugzilla.redhat.com/show_bug.cgi?id=1631060soundtouch: Assertion failure in BPMDetect class in BPMDetect.cpp

EPSS

Процентиль: 73%
0.00775
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 7 лет назад

The BPMDetect class in BPMDetect.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (assertion failure and application exit), as demonstrated by SoundStretch.

CVSS3: 6.5
nvd
больше 7 лет назад

The BPMDetect class in BPMDetect.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (assertion failure and application exit), as demonstrated by SoundStretch.

CVSS3: 6.5
debian
больше 7 лет назад

The BPMDetect class in BPMDetect.cpp in libSoundTouch.a in Olli Parvia ...

CVSS3: 6.5
github
больше 3 лет назад

The BPMDetect class in BPMDetect.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (assertion failure and application exit), as demonstrated by SoundStretch.

suse-cvrf
около 7 лет назад

Security update for soundtouch

EPSS

Процентиль: 73%
0.00775
Низкий

6.5 Medium

CVSS3