CVE-2026-71261
- EPSS 0.13%
- Veröffentlicht 05.08.2026 12:26:09
- Zuletzt bearbeitet 10.08.2026 12:17:28
dr_libs dr_wav.h (all versions through current master) contains an integer overflow in W64 CUE chunk metadata parsing. In drwav__metadata_process_chunk, a stage-1 capacity estimate truncates the 64-bit W64 chunk sizeInBytes to size_t before dividing ...
CVE-2026-32836
- EPSS 0.18%
- Veröffentlicht 17.03.2026 19:10:19
- Zuletzt bearbeitet 14.07.2026 19:16:56
dr_libs dr_flac.h version 0.13.3 and earlier (fixed in commits fefced4, 4f5a4cd, and 663239a) contain an uncontrolled memory allocation vulnerability in drflac__read_and_decode_metadata() that allows attackers to trigger excessive memory allocation b...
CVE-2026-29022
- EPSS 0.21%
- Veröffentlicht 03.03.2026 19:49:16
- Zuletzt bearbeitet 14.07.2026 19:16:55
dr_libs dr_wav.h version 0.14.4 and earlier (fixed in commit 8a7258c) contain a heap buffer overflow vulnerability in the drwav__read_smpl_to_metadata_obj() function of dr_wav.h that allows memory corruption via crafted WAV files. Attackers can explo...