VYPR

Sonivox

by Google

CVEs (3)

  • CVE-2019-9370MedSep 27, 2019
    risk 0.42cvss 6.5epss 0.01

    In sonivox, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID:…

  • CVE-2017-13234MedFeb 12, 2018
    risk 0.42cvss 6.5epss 0.01

    In DLSParser of the sonivox library, there is possible resource exhaustion due to a memory leak. This could lead to remote temporary denial of service with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android. Versions: 5.1.1,…

  • CVE-2015-3836Oct 1, 2015
    risk 0.00cvss epss 0.03

    The Parse_wave function in arm-wt-22k/lib_src/eas_mdls.c in the Sonivox DLS-to-EAS converter in Android before 5.1.1 LMY48I does not reject a negative value for a certain size field, which allows remote attackers to execute arbitrary code or cause a denial of service (buffer…