High severity8.8NVD Advisory· Published Jul 23, 2018· Updated Jun 17, 2026
CVE-2018-14523
CVE-2018-14523
Description
An issue was discovered in aubio 0.4.6. A buffer over-read can occur in new_aubio_pitchyinfft in pitch/pitchyinfft.c, as demonstrated by aubionotes.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
aubioPyPI | < 0.4.7 | 0.4.7 |
Affected products
3- ghsa-coords3 versionspkg:pypi/aubiopkg:rpm/suse/aubio&distro=SUSE%20Package%20Hub%2015pkg:rpm/suse/python-aubio&distro=SUSE%20Package%20Hub%2015
< 0.4.7+ 2 more
- (no CPE)range: < 0.4.7
- (no CPE)range: < 0.4.6-bp150.3.3.1
- (no CPE)range: < 0.4.6-bp150.3.3.1
Patches
Vulnerability mechanics
References
7- github.com/aubio/aubio/issues/189nvdExploitThird Party AdvisoryWEB
- lists.opensuse.org/opensuse-security-announce/2019-03/msg00031.htmlnvdMailing ListThird Party AdvisoryWEB
- github.com/advisories/GHSA-3x58-8qmv-wqw5ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2018-14523ghsaADVISORY
- lists.opensuse.org/opensuse-security-announce/2019-04/msg00071.htmlnvdWEB
- github.com/aubio/aubio/commit/af4f9e6a93b629fb6defa2a229ec828885b9d187ghsaWEB
- github.com/pypa/advisory-database/tree/main/vulns/aubio/PYSEC-2018-63.yamlghsaWEB
News mentions
0No linked articles in our index yet.