Unrated severityNVD Advisory· Published Jul 11, 2019· Updated Aug 5, 2024
CVE-2019-1010317
CVE-2019-1010317
Description
WavPack 5.1.0 and earlier is affected by: CWE-457: Use of Uninitialized Variable. The impact is: Unexpected control flow, crashes, and segfaults. The component is: ParseCaffHeaderConfig (caff.c:486). The attack vector is: Maliciously crafted .wav file. The fixed version is: After commit https://github.com/dbry/WavPack/commit/f68a9555b548306c5b1ee45199ccdc4a16a6101b.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6CFFFWIWALGQPKINRDW3PRGRD5LOLGZA/mitrevendor-advisoryx_refsource_FEDORA
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BRWQNE3TH5UF64IKHKKHVCHJHUOVKJUH/mitrevendor-advisoryx_refsource_FEDORA
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IX3J2JML5A7KC2BLGBEFTIIZR3EM7LVJ/mitrevendor-advisoryx_refsource_FEDORA
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PYESOAZ6Z6IG4BQBURL6OUY6P4YB6SKS/mitrevendor-advisoryx_refsource_FEDORA
- usn.ubuntu.com/4062-1/mitrevendor-advisoryx_refsource_UBUNTU
- github.com/dbry/WavPack/commit/f68a9555b548306c5b1ee45199ccdc4a16a6101bmitrex_refsource_MISC
- github.com/dbry/WavPack/issues/66mitrex_refsource_MISC
- lists.debian.org/debian-lts-announce/2021/01/msg00013.htmlmitremailing-listx_refsource_MLIST
News mentions
0No linked articles in our index yet.