PT-2018-6359 · Swftools · Swftools

Published

2018-07-09

·

Updated

2018-09-06

·

CVE-2017-16890

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: SWFTools version 0.9.2
Description: The issue is related to a divide-by-zero error in the wav convert2mono function, located in lib/wav.c, which occurs because the align value may be zero.
Recommendations: For SWFTools version 0.9.2, consider modifying the wav convert2mono function to handle cases where the align value is zero to prevent the divide-by-zero error.

Exploit

Fix

Divide By Zero

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-16890

Affected Products

Swftools