Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-17095

Опубликовано: 16 сент. 2018
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 6.8
CVSS3: 8.8

Описание

An issue has been discovered in mpruett Audio File Library (aka audiofile) 0.3.6, 0.3.5, 0.3.4, 0.3.3, 0.3.2, 0.3.1, 0.3.0. A heap-based buffer overflow in Expand3To4Module::run has occurred when running sfconvert.

РелизСтатусПримечание
bionic

ignored

end of standard support, was deferred
cosmic

ignored

end of life
devel

not-affected

0.3.6-5build1
disco

ignored

end of life
eoan

not-affected

0.3.6-5
esm-apps/bionic

released

0.3.6-4ubuntu0.1~esm1
esm-apps/focal

not-affected

0.3.6-5build1
esm-apps/jammy

not-affected

0.3.6-5build1
esm-apps/xenial

released

0.3.6-2ubuntu0.16.04.1+esm1
esm-infra-legacy/trusty

released

0.3.6-2ubuntu0.14.04.3

Показывать по

EPSS

Процентиль: 94%
0.12531
Средний

6.8 Medium

CVSS2

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 7
redhat
больше 7 лет назад

An issue has been discovered in mpruett Audio File Library (aka audiofile) 0.3.6, 0.3.5, 0.3.4, 0.3.3, 0.3.2, 0.3.1, 0.3.0. A heap-based buffer overflow in Expand3To4Module::run has occurred when running sfconvert.

CVSS3: 8.8
nvd
больше 7 лет назад

An issue has been discovered in mpruett Audio File Library (aka audiofile) 0.3.6, 0.3.5, 0.3.4, 0.3.3, 0.3.2, 0.3.1, 0.3.0. A heap-based buffer overflow in Expand3To4Module::run has occurred when running sfconvert.

CVSS3: 8.8
debian
больше 7 лет назад

An issue has been discovered in mpruett Audio File Library (aka audiof ...

suse-cvrf
около 7 лет назад

Security update for audiofile

suse-cvrf
больше 7 лет назад

Security update for audiofile

EPSS

Процентиль: 94%
0.12531
Средний

6.8 Medium

CVSS2

8.8 High

CVSS3