Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-17097

Опубликовано: 17 сент. 2018
Источник: redhat
CVSS3: 3.3
EPSS Низкий

Описание

The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (double free) or possibly have unspecified other impact, as demonstrated by SoundStretch.

Отчет

This issue did not affect the versions of soundtouch as shipped with Red Hat Enterprise Linux 7 as they did not include the vulnerable code.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 7soundtouchNot affected
Red Hat Enterprise Linux 8soundtouchFix deferred

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-119
https://bugzilla.redhat.com/show_bug.cgi?id=1631054soundtouch: Out-of-bounds heap write in WavOutFile::write()

EPSS

Процентиль: 85%
0.02838
Низкий

3.3 Low

CVSS3

Связанные уязвимости

CVSS3: 8.8
ubuntu
почти 8 лет назад

The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (double free) or possibly have unspecified other impact, as demonstrated by SoundStretch.

CVSS3: 8.8
nvd
почти 8 лет назад

The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (double free) or possibly have unspecified other impact, as demonstrated by SoundStretch.

CVSS3: 8.8
debian
почти 8 лет назад

The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 ...

CVSS3: 8.8
github
больше 4 лет назад

The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (double free) or possibly have unspecified other impact, as demonstrated by SoundStretch.

suse-cvrf
больше 7 лет назад

Security update for soundtouch

EPSS

Процентиль: 85%
0.02838
Низкий

3.3 Low

CVSS3