Radscan

Network Audio System

7 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 1.23%
  • Veröffentlicht 09.10.2013 14:54:26
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Format string vulnerability in the osLogMsg function in server/os/aulog.c in Network Audio System (NAS) 1.9.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in unspecified...

Exploit
  • EPSS 0.15%
  • Veröffentlicht 09.10.2013 14:54:25
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple stack-based and heap-based buffer overflows in Network Audio System (NAS) 1.9.3 allow local users to cause a denial of service (crash) or possibly execute arbitrary code via the (1) display command argument to the ProcessCommandLine function...

Exploit
  • EPSS 14.48%
  • Veröffentlicht 20.03.2007 22:19:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Stack-based buffer overflow in the accept_att_local function in server/os/connection.c in Network Audio System (NAS) before 1.8a SVN 237 allows remote attackers to execute arbitrary code via a long path slave name in a USL socket connection.

Exploit
  • EPSS 9.1%
  • Veröffentlicht 20.03.2007 22:19:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Integer overflow in the ProcAuWriteElement function in server/dia/audispatch.c in Network Audio System (NAS) before 1.8a SVN 237 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large max_samples ...

Exploit
  • EPSS 5.6%
  • Veröffentlicht 20.03.2007 22:19:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The AddResource function in server/dia/resource.c in Network Audio System (NAS) before 1.8a SVN 237 allows remote attackers to cause a denial of service (server crash) via a nonexistent client ID.

Exploit
  • EPSS 6.76%
  • Veröffentlicht 20.03.2007 22:19:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Array index error in Network Audio System (NAS) before 1.8a SVN 237 allows remote attackers to cause a denial of service (crash) via (1) large num_action values in the ProcAuSetElements function in server/dia/audispatch.c or (2) a large inputNum para...

  • EPSS 4.05%
  • Veröffentlicht 20.03.2007 22:19:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The ReadRequestFromClient function in server/os/io.c in Network Audio System (NAS) before 1.8a SVN 237 allows remote attackers to cause a denial of service (crash) via multiple simultaneous connections, which triggers a NULL pointer dereference.