PoC Index

CVE-2020-18781

MEDIUM 5.5EPSS 0.3%

Heap buffer overflow vulnerability in FilePOSIX::read in File.cpp in audiofile 0.3.6 may cause denial-of-service via a crafted wav file, this bug can be triggered by the executable sfconvert.

CVSS v3.1
5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
EPSS
0.29% chance of exploitation in the next 30 days, 21th percentile
Published
2023-08-22
Updated
2024-10-04

Proof-of-concept exploits (1)

References

Related