Количество 5
Количество 5
CVE-2026-32837
(miniaudio version 0.11.25 and earlier contain a heap out-of-bounds rea ...)
CVE-2026-32837
A flaw was found in miniaudio. An attacker can exploit a heap out-of-bounds read vulnerability in the WAV BEXT metadata parser by processing a specially crafted WAV file. This vulnerability, caused by improper null-termination handling in the coding history field, allows for out-of-bounds reads past the allocated metadata pool. Successful exploitation can lead to application crashes or a denial of service.
CVE-2026-32837
miniaudio version 0.11.25 and earlier contain a heap out-of-bounds read vulnerability in the WAV BEXT metadata parser that allows attackers to trigger memory access violations by processing crafted WAV files. Attackers can exploit improper null-termination handling in the coding history field to cause out-of-bounds reads past the allocated metadata pool, resulting in application crashes or denial of service.
CVE-2026-32837
miniaudio version 0.11.25 and earlier contain a heap out-of-bounds rea ...
GHSA-grfx-q7pf-j7ff
miniaudio version 0.11.25 and earlier contain a heap out-of-bounds read vulnerability in the WAV BEXT metadata parser that allows attackers to trigger memory access violations by processing crafted WAV files. Attackers can exploit improper null-termination handling in the coding history field to cause out-of-bounds reads past the allocated metadata pool, resulting in application crashes or denial of service.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-32837 (miniaudio version 0.11.25 and earlier contain a heap out-of-bounds rea ...) | 0% Низкий | 9 дней назад | ||
CVE-2026-32837 A flaw was found in miniaudio. An attacker can exploit a heap out-of-bounds read vulnerability in the WAV BEXT metadata parser by processing a specially crafted WAV file. This vulnerability, caused by improper null-termination handling in the coding history field, allows for out-of-bounds reads past the allocated metadata pool. Successful exploitation can lead to application crashes or a denial of service. | CVSS3: 5.5 | 0% Низкий | 10 дней назад | |
CVE-2026-32837 miniaudio version 0.11.25 and earlier contain a heap out-of-bounds read vulnerability in the WAV BEXT metadata parser that allows attackers to trigger memory access violations by processing crafted WAV files. Attackers can exploit improper null-termination handling in the coding history field to cause out-of-bounds reads past the allocated metadata pool, resulting in application crashes or denial of service. | 0% Низкий | 10 дней назад | ||
CVE-2026-32837 miniaudio version 0.11.25 and earlier contain a heap out-of-bounds rea ... | 0% Низкий | 10 дней назад | ||
GHSA-grfx-q7pf-j7ff miniaudio version 0.11.25 and earlier contain a heap out-of-bounds read vulnerability in the WAV BEXT metadata parser that allows attackers to trigger memory access violations by processing crafted WAV files. Attackers can exploit improper null-termination handling in the coding history field to cause out-of-bounds reads past the allocated metadata pool, resulting in application crashes or denial of service. | CVSS3: 5.5 | 0% Низкий | 10 дней назад |
Уязвимостей на страницу