An issue has been discovered in mpruett Audio File Library (aka audiofile) 0.3.6, 0.3.5, 0.3.4, 0.3.3, 0.3.2, 0.3.1, 0.3.0. A heap-based buffer overflow in Expand3To4Module::run has occurred when running sfconvert.
References
Link Resource
https://github.com/mpruett/audiofile/issues/50 Exploit Issue Tracking Third Party Advisory
https://github.com/mpruett/audiofile/issues/51 Exploit Issue Tracking Third Party Advisory
https://usn.ubuntu.com/3800-1/ Patch Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2018-09-16T21:00:00

Updated: 2021-01-29T23:05:06

Reserved: 2018-09-16T00:00:00


Link: CVE-2018-17095

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-09-16T21:29:00.860

Modified: 2021-02-09T15:08:02.423


Link: CVE-2018-17095

JSON object: View

cve-icon Redhat Information

No data.

CWE