Logo
vulnerabilityCVE-2018-13440
Name
CVE-2018-13440
Source
NVD ( link)Debian ( link)
Description
The audiofile Audio File Library 0.3.6 has a NULL pointer dereference bug in ModuleState::setup in modules/ModuleState.cpp, which allows an attacker to cause a denial of service via a crafted caf file, as demonstrated by sfconvert.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
audiofile
Exploitable

Vulnerability Ratings#


6.5
other
4.3
CVSSv2

Others affected components#


Name
Project
Project Version
Version
Status
yocto
kirkstone
0.3.6
Exploitable
yocto
scarthgap
0.3.6
Exploitable