Heap-based buffer overflow in libsndfile 1.0.25 allows remote attackers to have unspecified impact via the headindex value in the header in an AIFF file.
References
Configurations
History
21 Nov 2024, 02:37
Type | Values Removed | Values Added |
---|---|---|
References | () http://lists.fedoraproject.org/pipermail/package-announce/2015-November/171466.html - | |
References | () http://lists.fedoraproject.org/pipermail/package-announce/2015-November/172593.html - | |
References | () http://lists.fedoraproject.org/pipermail/package-announce/2015-November/172607.html - | |
References | () http://lists.opensuse.org/opensuse-updates/2015-11/msg00077.html - | |
References | () http://lists.opensuse.org/opensuse-updates/2015-11/msg00145.html - | |
References | () http://packetstormsecurity.com/files/133926/libsndfile-1.0.25-Heap-Overflow.html - Exploit | |
References | () http://www.nemux.org/2015/10/13/libsndfile-1-0-25-heap-overflow/ - | |
References | () http://www.openwall.com/lists/oss-security/2015/11/03/3 - | |
References | () http://www.openwall.com/lists/oss-security/2015/11/03/7 - | |
References | () http://www.securityfocus.com/bid/77427 - | |
References | () http://www.ubuntu.com/usn/USN-2832-1 - | |
References | () https://security.gentoo.org/glsa/201612-03 - | |
References | () https://www.exploit-db.com/exploits/38447/ - Exploit |
Information
Published : 2015-11-17 15:59
Updated : 2024-11-21 02:37
NVD link : CVE-2015-7805
Mitre link : CVE-2015-7805
CVE.ORG link : CVE-2015-7805
JSON object : View
Products Affected
opensuse
- opensuse
mega-nerd
- libsndfile
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer