Vulnerabilities
9 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2018-19800 | aubio v0.4.0 to v0.4.8 has a Buffer Overflow in new_aubio_tempo. aubio v0.4.0 to v0.4.8 has a Buffer Overflow in new_aubio_tempo. NVD description · AI analysis pending | 9.8 group max | 2% |
| — | ||
| CVE-2018-14523 | An issue was discovered in aubio 0.4.6. An issue was discovered in aubio 0.4.6. A buffer over-read can occur in new_aubio_pitchyinfft in pitch/pitchyinfft.c, as demonstrated by aubionotes. NVD description · AI analysis pending | 8.8 | 2% | PoC |
| — | |
| CVE-2017-17555 +1 in the same advisory: …17554 | The swri_audio_convert function in audioconvert.c in FFmpeg libswresample through 3.0.101, as used in FFmpeg 3.4.1, aubio 0.4.6, and other products, allows remo The swri_audio_convert function in audioconvert.c in FFmpeg libswresample through 3.0.101, as used in FFmpeg 3.4.1, aubio 0.4.6, and other products, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted audio file. NVD description · AI analysis pending | 6.5 group max | 1% |
| — | ||
| CVE-2017-17054 | In aubio 0.4.6, a divide-by-zero error exists in the function new_aubio_source_wavread() in source_wavread.c, which may lead to DoS when playing a crafted audio In aubio 0.4.6, a divide-by-zero error exists in the function new_aubio_source_wavread() in source_wavread.c, which may lead to DoS when playing a crafted audio file. NVD description · AI analysis pending | 5.5 | <1% |
| — |