Medium severity5.5NVD Advisory· Published Mar 14, 2017· Updated May 13, 2026
CVE-2016-10172
CVE-2016-10172
Description
The read_new_config_info function in open_utils.c in Wavpack before 5.1.0 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted WV file.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- www.openwall.com/lists/oss-security/2017/01/28/9nvdMailing ListPatchThird Party Advisory
- github.com/dbry/WavPack/commit/4bc05fc490b66ef2d45b1de26abf1455b486b0dcnvdPatch
- sourceforge.net/p/wavpack/mailman/message/35561951/nvdExploitThird Party Advisory
- www.securityfocus.com/bid/95883nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.