Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-33064

Опубликовано: 13 сент. 2023
Источник: redhat
CVSS3: 8.4

Описание

An off-by-one error in function wav_read_header in src/wav.c in Libsndfile 1.1.0, results in a write out of bound, which allows an attacker to execute arbitrary code, Denial of Service or other unspecified impacts.

Libsndfile could allow a remote attacker to execute arbitrary code on the system, caused by an off-by-one error in function wav_read_header in src/wav.c.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 8libsndfileNot affected
Red Hat Enterprise Linux 9libsndfileNot affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-193->CWE-96
https://bugzilla.redhat.com/show_bug.cgi?id=2238936libsndfile: off-by-one error in function wav_read_header in src/wav.c leads to code execution

8.4 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 2 лет назад

An off-by-one error in function wav_read_header in src/wav.c in Libsndfile 1.1.0, results in a write out of bound, which allows an attacker to execute arbitrary code, Denial of Service or other unspecified impacts.

CVSS3: 7.8
nvd
больше 2 лет назад

An off-by-one error in function wav_read_header in src/wav.c in Libsndfile 1.1.0, results in a write out of bound, which allows an attacker to execute arbitrary code, Denial of Service or other unspecified impacts.

CVSS3: 7.8
msrc
больше 1 года назад

Описание отсутствует

CVSS3: 7.8
debian
больше 2 лет назад

An off-by-one error in function wav_read_header in src/wav.c in Libsnd ...

CVSS3: 7.8
github
больше 2 лет назад

An off-by-one error in function wav_read_header in src/wav.c in Libsndfile 1.1.0, results in a write out of bound, which allows an attacker to execute arbitrary code, Denial of Service or other unspecified impacts.

8.4 High

CVSS3