PT-2018-13893 · Olli Parviainen+3 · Soundtouch+3

Fish

·

Publicado

2018-09-16

·

Atualizado

2024-06-15

·

CVE-2018-17097

CVSS v3.1

8.8

Alta

VetorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SoundTouch version 2.0
Description The issue in the WavFileBase class in WavFile.cpp allows remote attackers to cause a denial of service, potentially leading to a double free, or possibly have other unspecified impacts.
Recommendations For SoundTouch version 2.0, consider applying a patch or fix to address the issue in the WavFileBase class to prevent potential denial of service or other impacts. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Double Free

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2018-2380
ALT-PU-2018-2674
CVE-2018-17097
MGASA-2018-0462
MGASA-2020-0193
OPENSUSE-SU-2018_3691-1
OPENSUSE-SU-2018_3692-1
OPENSUSE-SU-2019:0086-1
OPENSUSE-SU-2019_0086-1
OPENSUSE-SU-2024:11393-1
SUSE-SU-2018:3606-1
SUSE-SU-2018:3606-2
SUSE-SU-2018:3610-1
SUSE-SU-2019:0096-1
SUSE-SU-2019:0112-1
SUSE-SU-2019_0096-1
SUSE-SU-2019_0112-1
USN-4826-1

Produtos afetados

Alt Linux
Soundtouch
Suse
Ubuntu