Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-1000223

Опубликовано: 20 авг. 2018
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8
CVSS3: 8.8

Описание

soundtouch version up to and including 2.0.0 contains a Buffer Overflow vulnerability in SoundStretch/WavFile.cpp:WavInFile::readHeaderBlock() that can result in arbitrary code execution. This attack appear to be exploitable via victim must open maliocius file in soundstretch utility.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needed
cosmic

ignored

end of life
devel

released

2.1.2+ds1-1
disco

released

2.1.2+ds1-1
eoan

released

2.1.2+ds1-1
esm-apps/bionic

released

1.9.2-3ubuntu0.1~esm1
esm-apps/focal

released

2.1.2+ds1-1
esm-apps/jammy

released

2.1.2+ds1-1
esm-apps/xenial

released

1.9.2-2+deb9u1ubuntu0.1~esm1
esm-infra-legacy/trusty

released

1.7.1-5ubuntu0.1~esm1

Показывать по

EPSS

Процентиль: 77%
0.01057
Низкий

6.8 Medium

CVSS2

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 4.2
redhat
больше 7 лет назад

soundtouch version up to and including 2.0.0 contains a Buffer Overflow vulnerability in SoundStretch/WavFile.cpp:WavInFile::readHeaderBlock() that can result in arbitrary code execution. This attack appear to be exploitable via victim must open maliocius file in soundstretch utility.

CVSS3: 8.8
nvd
больше 7 лет назад

soundtouch version up to and including 2.0.0 contains a Buffer Overflow vulnerability in SoundStretch/WavFile.cpp:WavInFile::readHeaderBlock() that can result in arbitrary code execution. This attack appear to be exploitable via victim must open maliocius file in soundstretch utility.

CVSS3: 8.8
debian
больше 7 лет назад

soundtouch version up to and including 2.0.0 contains a Buffer Overflo ...

suse-cvrf
больше 7 лет назад

Security update for soundtouch

suse-cvrf
больше 7 лет назад

Security update for soundtouch

EPSS

Процентиль: 77%
0.01057
Низкий

6.8 Medium

CVSS2

8.8 High

CVSS3