Описание
A heap buffer overflow vulnerability in msadpcm_decode_block of libsndfile 1.0.30 allows attackers to execute arbitrary code via a crafted WAV file.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 1.0.28-4ubuntu0.18.04.2 |
| devel | released | 1.0.31-1ubuntu2 |
| esm-infra-legacy/trusty | released | 1.0.25-7ubuntu2.2+esm2 |
| esm-infra/bionic | released | 1.0.28-4ubuntu0.18.04.2 |
| esm-infra/focal | released | 1.0.28-7ubuntu0.1 |
| esm-infra/xenial | released | 1.0.25-10ubuntu0.16.04.3+esm1 |
| focal | released | 1.0.28-7ubuntu0.1 |
| groovy | ignored | end of life |
| hirsute | released | 1.0.31-1ubuntu1.1 |
| impish | released | 1.0.31-1ubuntu2 |
Показывать по
10
6.8 Medium
CVSS2
8.8 High
CVSS3
Связанные уязвимости
CVSS3: 8.8
redhat
больше 4 лет назад
A heap buffer overflow vulnerability in msadpcm_decode_block of libsndfile 1.0.30 allows attackers to execute arbitrary code via a crafted WAV file.
CVSS3: 8.8
nvd
больше 4 лет назад
A heap buffer overflow vulnerability in msadpcm_decode_block of libsndfile 1.0.30 allows attackers to execute arbitrary code via a crafted WAV file.
CVSS3: 8.8
debian
больше 4 лет назад
A heap buffer overflow vulnerability in msadpcm_decode_block of libsnd ...
6.8 Medium
CVSS2
8.8 High
CVSS3