PT-2019-9924 · Aubio+2 · Aubio+2

Published

2019-03-10

·

Updated

2019-08-13

·

CVE-2018-19802

CVSS v4.0

8.7

High

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions aubio versions 0.4.0 through 0.4.8
Description The issue is related to a NULL pointer dereference in the new aubio onset function within the src/notes/notes.c file, specifically in the new aubio notes function. Additionally, there is a Buffer Overflow issue.
Recommendations For versions 0.4.0 through 0.4.8, consider disabling the new aubio onset function or restricting access to the new aubio notes function within src/notes/notes.c to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2019-1387
CVE-2018-19802
GHSA-C6JQ-H4JP-72PR
OPENSUSE-SU-2019:1618-1
OPENSUSE-SU-2019:1624-1
OPENSUSE-SU-2019:1834-1
OPENSUSE-SU-2019:1852-1
OPENSUSE-SU-2019_1618-1
OPENSUSE-SU-2019_1834-1
PYSEC-2019-164

Affected Products

Alt Linux
Suse
Aubio