Skip to content
Noroxi

pulseaudio records

7 published records for vendor pulseaudio.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
71.4%
Median publish → KEV
No record has entered KEV

All records

7 records
  • CVE-2007-1804
    33Monitor

    PulseAudio 0.9.5 allows remote attackers to cause a denial of service (daemon crash) via (1) a PA_PSTREAM_DESCRIPTOR_LENGTH value of FRAME_S

    HighCVSS 7.8Proof of conceptEPSS 7%

    pulseaudio · pulseaudioApr 2, 2007

  • CVE-2009-1894
    28Monitor

    Race condition in PulseAudio 0.9.9, 0.9.10, and 0.9.14 allows local users to gain privileges via vectors involving creation of a hard link,

    HighCVSS 7.2Proof of conceptEPSS 1%

    pulseaudio · pulseaudioJul 17, 2009

  • CVE-2008-0008
    28Monitor

    The pa_drop_root function in PulseAudio 0.9.8, and a certain 0.9.9 build, does not check return values from (1) setresuid, (2) setreuid, (3)

    HighCVSS 7.2No exploitEPSS 1%

    pulseaudio · pulseaudioJan 28, 2008

  • CVE-2009-1299
    27Monitor

    The pa_make_secure_dir function in core-util.c in PulseAudio 0.9.10 and 0.9.19 allows local users to change the ownership and permissions of

    MediumCVSS 6.9No exploitEPSS 0%

    pulseaudio · pulseaudioMar 18, 2010

  • Ubuntu's implementation of pulseaudio can be crashed by a malicious program if a bluetooth headset is connected.

    MediumCVSS 4.0No exploitEPSS 0%

    pulseaudio · pulseaudioNov 22, 2024

  • Ubuntu modifications to pulseaudio to provide snap security enforcement could be unloaded

    LowCVSS 3.3No exploitEPSS 0%

    pulseaudio · pulseaudioMay 15, 2020

  • CVE-2014-3970
    11Monitor

    The pa_rtp_recv function in modules/rtp/rtp.c in the module-rtp-recv module in PulseAudio 5.0 and earlier allows remote attackers to cause a

    LowCVSS 2.9No exploitEPSS 1%

    pulseaudio · pulseaudioJun 11, 2014