AVG-1547 log

Package libmysofa
Status Fixed
Severity Medium
Type multiple issues
Affected 1.1-2
Fixed 1.2-1
Current 1.3.3-1 [extra]
Ticket None
Created Mon Feb 8 22:56:11 2021
Issue Severity Remote Type Description
CVE-2020-36152 Medium No Arbitrary code execution
A buffer overflow in readDataVar in hdf/dataobject.c in Symonics libmysofa 0.5 - 1.1 allows attackers to execute arbitrary code via a crafted SOFA.
CVE-2020-36151 Medium No Arbitrary code execution
Incorrect handling of input data in the mysofa_resampler_reset_mem function in the libmysofa library 0.5 - 1.1 will lead to a heap buffer overflow and...
CVE-2020-36150 Medium No Information disclosure
Incorrect handling of input data in loudness function in the libmysofa library 0.5 - 1.1 will lead to a heap buffer overflow and access to an unallocated...
CVE-2020-36149 Low No Denial of service
Incorrect handling of input data in changeAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault...
CVE-2020-36148 Low No Denial of service
Incorrect handling of input data in verifyAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault...