ZeroHour

Vulnerabilities

9 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2018-19800
+2 in the same advisory: …19802 …19801
aubio v0.4.0 to v0.4.8 has a Buffer Overflow in new_aubio_tempo.

aubio v0.4.0 to v0.4.8 has a Buffer Overflow in new_aubio_tempo.

NVD description · AI analysis pending
9.8
group max
2%
  • aubio aubio
CVE-2018-14523
+2 in the same advisory: …14522 …14521
An issue was discovered in aubio 0.4.6.

An issue was discovered in aubio 0.4.6. A buffer over-read can occur in new_aubio_pitchyinfft in pitch/pitchyinfft.c, as demonstrated by aubionotes.

NVD description · AI analysis pending
8.82% PoC
  • aubio aubio
  • aubio leap
  • aubio linux enterprise
CVE-2017-17555
+1 in the same advisory: …17554
The swri_audio_convert function in audioconvert.c in FFmpeg libswresample through 3.0.101, as used in FFmpeg 3.4.1, aubio 0.4.6, and other products, allows remo

The swri_audio_convert function in audioconvert.c in FFmpeg libswresample through 3.0.101, as used in FFmpeg 3.4.1, aubio 0.4.6, and other products, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted audio file.

NVD description · AI analysis pending
6.5
group max
1%
  • aubio aubio
  • aubio ffmpeg
  • aubio libswresample
CVE-2017-17054
In aubio 0.4.6, a divide-by-zero error exists in the function new_aubio_source_wavread() in source_wavread.c, which may lead to DoS when playing a crafted audio

In aubio 0.4.6, a divide-by-zero error exists in the function new_aubio_source_wavread() in source_wavread.c, which may lead to DoS when playing a crafted audio file.

NVD description · AI analysis pending
5.5<1%
  • aubio aubio