Skip to content
Noroxi

WavPack records

17 published records for vendor wavpack.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
100%
Median publish → KEV
No record has entered KEV

All records

17 records
  • CVE-2018-7254
    34Monitor

    The ParseCaffHeaderConfig function of the cli/caff.c file of WavPack 5.1.0 allows a remote attacker to cause a denial-of-service (global buf

    HighCVSS 7.8Proof of conceptEPSS 10%

    wavpack · wavpackFeb 19, 2018

  • CVE-2018-6767
    32Monitor

    A stack-based buffer over-read in the ParseRiffHeaderConfig function of cli/riff.c file of WavPack 5.1.0 allows a remote attacker to cause a

    HighCVSS 7.8No exploitEPSS 3%

    wavpack · wavpackFeb 6, 2018

  • CVE-2018-7253
    32Monitor

    The ParseDsdiffHeaderConfig function of the cli/dsdiff.c file of WavPack 5.1.0 allows a remote attacker to cause a denial-of-service (heap-b

    HighCVSS 7.8No exploitEPSS 3%

    wavpack · wavpackFeb 19, 2018

  • An issue was discovered in WavPack 5.1.0 and earlier.

    HighCVSS 7.8No exploitEPSS 2%

    wavpack · wavpackApr 29, 2018

  • An issue was discovered in WavPack 5.1.0 and earlier.

    HighCVSS 7.8No exploitEPSS 2%

    wavpack · wavpackApr 29, 2018

  • WavpackSetConfiguration64 in pack_utils.c in libwavpack.a in WavPack through 5.1.0 has a "Conditional jump or move depends on uninitialised

    MediumCVSS 6.5No exploitEPSS 3%

    wavpack · wavpackApr 24, 2019

  • WavPack 5.3.0 has an out-of-bounds write in WavpackPackSamples in pack_utils.c because of an integer overflow in a malloc argument.

    MediumCVSS 6.1No exploitEPSS 1%

    wavpack · wavpackDec 28, 2020

  • The function WavpackVerifySingleBlock in open_utils.c in libwavpack.a in WavPack through 5.1.0 allows attackers to cause a denial-of-service

    MediumCVSS 5.5No exploitEPSS 3%

    wavpack · wavpackDec 4, 2018

  • The function WavpackPackInit in pack_utils.c in libwavpack.a in WavPack through 5.1.0 allows attackers to cause a denial-of-service (resourc

    MediumCVSS 5.5No exploitEPSS 2%

    wavpack · wavpackDec 4, 2018

  • An issue was discovered in WavPack 5.1.0 and earlier for DSDiff input.

    MediumCVSS 5.5No exploitEPSS 2%

    wavpack · wavpackApr 29, 2018

  • An issue was discovered in WavPack 5.1.0 and earlier for W64 input.

    MediumCVSS 5.5No exploitEPSS 2%

    wavpack · wavpackApr 29, 2018

  • An issue was discovered in WavPack 5.1.0 and earlier for WAV input.

    MediumCVSS 5.5No exploitEPSS 2%

    wavpack · wavpackApr 29, 2018

  • WavPack 5.1 and earlier is affected by: CWE 369: Divide by Zero.

    MediumCVSS 5.5No exploitEPSS 2%

    wavpack · wavpackJul 11, 2019

  • WavPack 5.1.0 and earlier is affected by: CWE-457: Use of Uninitialized Variable.

    MediumCVSS 5.5No exploitEPSS 2%

    wavpack · wavpackJul 11, 2019

  • WavPack 5.1.0 and earlier is affected by: CWE-457: Use of Uninitialized Variable.

    MediumCVSS 5.5No exploitEPSS 1%

    wavpack · wavpackJul 11, 2019

  • An out of bounds read was found in Wavpack 5.4.0 in processing *.WAV files.

    MediumCVSS 5.5No exploitEPSS 1%

    wavpack · wavpackMar 10, 2022

  • CVE-2022-2476
    22Monitor

    A null pointer dereference bug was found in wavpack-5.4.0 The results from the ASAN log: AddressSanitizer:DEADLYSIGNAL =====================

    MediumCVSS 5.5No exploitEPSS 0%

    wavpack · wavpackJul 19, 2022