An issue was discovered in WavPack 5.1.0 and earlier. The WAV parser component contains a vulnerability that allows writing to memory because ParseRiffHeaderConfig in riff.c does not reject multiple format chunks.
References
Configurations
History
No history.
Information
Published : 2018-04-29 15:29
Updated : 2024-11-21 03:41
NVD link : CVE-2018-10536
Mitre link : CVE-2018-10536
CVE.ORG link : CVE-2018-10536
JSON object : View
Products Affected
debian
- debian_linux
wavpack
- wavpack
CWE
CWE-787
Out-of-bounds Write