CVE-2018-20196 - log back

CVE-2018-20196 edited at 04 Apr 2022 23:41:47
Severity
- Unknown
+ High
Remote
- Unknown
+ Remote
Type
- Unknown
+ Arbitrary code execution
Description
+ There is a stack-based buffer overflow in the third instance of the calculate_gain function in libfaad/sbr_hfadj.c in Freeware Advanced Audio Decoder 2 (FAAD2) 2.8.8. A crafted input will lead to a denial of service or possibly unspecified other impact because the S_M array is mishandled.
References
+ https://github.com/knik0/faad2/issues/19
+ https://github.com/knik0/faad2/commit/6aeeaa1af0caf986daf22852a97f7c13c5edd879
Notes
CVE-2018-20196 created at 04 Apr 2022 23:38:29