Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-17098

Опубликовано: 17 сент. 2018
Источник: redhat
CVSS3: 3.3

Описание

The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (heap corruption from size inconsistency) or possibly have unspecified other impact, as demonstrated by SoundStretch.

Отчет

This issue did not affect the versions of soundtouch as shipped with Red Hat Enterprise Linux 7 as they did not include the vulnerable code.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 7soundtouchNot affected
Red Hat Enterprise Linux 8soundtouchFix deferred

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-119
https://bugzilla.redhat.com/show_bug.cgi?id=1631064soundtouch: Heap corruption in WavFileBase class in WavFile.cpp

3.3 Low

CVSS3

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 7 лет назад

The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (heap corruption from size inconsistency) or possibly have unspecified other impact, as demonstrated by SoundStretch.

CVSS3: 8.8
nvd
больше 7 лет назад

The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (heap corruption from size inconsistency) or possibly have unspecified other impact, as demonstrated by SoundStretch.

CVSS3: 8.8
debian
больше 7 лет назад

The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 ...

CVSS3: 8.8
github
больше 3 лет назад

The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (heap corruption from size inconsistency) or possibly have unspecified other impact, as demonstrated by SoundStretch.

suse-cvrf
почти 7 лет назад

Security update for soundtouch

3.3 Low

CVSS3