AVG-631 log
| Package | wavpack |
| Status | Fixed |
| Severity | High |
| Type | arbitrary code execution |
| Affected | 4.80.0-1 |
| Fixed | 5.1.0-2 |
| Current | 5.8.1-1 [extra] |
| Ticket | FS#57609 |
| Created | Thu Feb 22 23:14:31 2018 |
| Issue | Severity | Remote | Type | Description |
|---|---|---|---|---|
| CVE-2018-7254 | Medium | Yes | Arbitrary code execution | The ParseCaffHeaderConfig function of the cli/caff.c file of WavPack 5.1.0 allows a remote attacker to cause a denial-of-service (global buffer over-read),... |
| CVE-2018-7253 | High | Yes | Arbitrary code execution | The ParseDsdiffHeaderConfig function of the cli/dsdiff.c file of WavPack 5.1.0 allows a remote attacker to cause a denial-of-service (heap-based buffer... |
| CVE-2018-6767 | Medium | Yes | Arbitrary code execution | A stack-based buffer over-read in the ParseRiffHeaderConfig function of cli/riff.c file of WavPack 5.1.0 allows a remote attacker to cause a... |
| Date | Advisory | Package | Type |
|---|---|---|---|
| 23 Feb 2018 | ASA-201802-12 | wavpack | arbitrary code execution |