Wavpack

Wavpack

17 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.62%
  • Veröffentlicht 29.04.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:41:31

An issue was discovered in WavPack 5.1.0 and earlier for DSDiff input. Out-of-bounds writes can occur because ParseDsdiffHeaderConfig in dsdiff.c does not validate the sizes of unknown chunks before attempting memory allocation, related to a lack of ...

Exploit
  • EPSS 0.64%
  • Veröffentlicht 29.04.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:41:31

An issue was discovered in WavPack 5.1.0 and earlier for WAV input. Out-of-bounds writes can occur because ParseRiffHeaderConfig in riff.c does not validate the sizes of unknown chunks before attempting memory allocation, related to a lack of integer...

  • EPSS 0.96%
  • Veröffentlicht 29.04.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:41:31

An issue was discovered in WavPack 5.1.0 and earlier. The W64 parser component contains a vulnerability that allows writing to memory because ParseWave64HeaderConfig in wave64.c does not reject multiple format chunks.

  • EPSS 1.01%
  • Veröffentlicht 29.04.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:41:30

An issue was discovered in WavPack 5.1.0 and earlier. The WAV parser component contains a vulnerability that allows writing to memory because ParseRiffHeaderConfig in riff.c does not reject multiple format chunks.

  • EPSS 21.31%
  • Veröffentlicht 19.02.2018 23:29:00
  • Zuletzt bearbeitet 21.11.2024 04:11:53

The ParseCaffHeaderConfig function of the cli/caff.c file of WavPack 5.1.0 allows a remote attacker to cause a denial-of-service (global buffer over-read), or possibly trigger a buffer overflow or incorrect memory allocation, via a maliciously crafte...

Exploit
  • EPSS 0.88%
  • Veröffentlicht 19.02.2018 23:29:00
  • Zuletzt bearbeitet 21.11.2024 04:11:53

The ParseDsdiffHeaderConfig function of the cli/dsdiff.c file of WavPack 5.1.0 allows a remote attacker to cause a denial-of-service (heap-based buffer over-read) or possibly overwrite the heap via a maliciously crafted DSDIFF file.

Exploit
  • EPSS 0.88%
  • Veröffentlicht 06.02.2018 22:29:00
  • Zuletzt bearbeitet 21.11.2024 04:11:08

A stack-based buffer over-read in the ParseRiffHeaderConfig function of cli/riff.c file of WavPack 5.1.0 allows a remote attacker to cause a denial-of-service attack or possibly have unspecified other impact via a maliciously crafted RF64 file.