|
198271
|
9.8 |
CRITICAL
Network
|
stashcat
|
heinekingmedia
|
An issue was discovered in heinekingmedia StashCat through 1.7.5 for Android. The keystore is locked with a hard-coded password. Therefore, everyone with access to the keystore can read the content o…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2017-11129
|
2024-11-21 12:07 |
2017-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198272
|
5.5 |
MEDIUM
Local
|
libid3tag_project
|
libid3tag
|
The id3_ucs4_length function in ucs4.c in libid3tag 0.15.1b allows remote attackers to cause a denial of service (NULL Pointer Dereference and application crash) via a crafted mp3 file.
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-11550
|
2024-11-21 12:07 |
2017-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198273
|
5.5 |
MEDIUM
Local
|
timidity\+\+_project
|
timidity\+\+
|
The play_midi function in playmidi.c in TiMidity++ 2.14.0 allows remote attackers to cause a denial of service (large loop and CPU consumption) via a crafted mid file. NOTE: CPU consumption might be …
|
CWE-834
Excessive Iteration
|
CVE-2017-11549
|
2024-11-21 12:07 |
2017-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198274
|
5.5 |
MEDIUM
Local
|
xiph
|
libao
|
The _tokenize_matrix function in audio_out.c in Xiph.Org libao 1.2.0 allows remote attackers to cause a denial of service (memory corruption) via a crafted MP3 file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11548
|
2024-11-21 12:07 |
2017-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198275
|
5.5 |
MEDIUM
Local
|
timidity\+\+_project
|
timidity\+\+
|
The resample_gauss function in resample.c in TiMidity++ 2.14.0 allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted mid file. NOTE: a crash might be releva…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-11547
|
2024-11-21 12:07 |
2017-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198276
|
5.5 |
MEDIUM
Local
|
timidity\+\+_project
|
timidity\+\+
|
The insert_note_steps function in readmidi.c in TiMidity++ 2.14.0 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted mid file. NOTE: a cra…
|
CWE-369
Divide By Zero
|
CVE-2017-11546
|
2024-11-21 12:07 |
2017-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198277
|
5.5 |
MEDIUM
Local
|
sound_exchange_project debian
|
sound_exchange debian_linux
|
The wavwritehdr function in wav.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted snd file, during conve…
|
CWE-369
Divide By Zero
|
CVE-2017-11359
|
2024-11-21 12:07 |
2017-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198278
|
5.5 |
MEDIUM
Local
|
sound_exchange_project debian
|
sound_exchange debian_linux
|
The read_samples function in hcom.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted hcom file.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-11358
|
2024-11-21 12:07 |
2017-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198279
|
5.5 |
MEDIUM
Local
|
xiph.org
|
libvorbis
|
The vorbis_analysis_wrote function in lib/block.c in Xiph.Org libvorbis 1.3.5 allows remote attackers to cause a denial of service (OOM) via a crafted wav file.
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-11333
|
2024-11-21 12:07 |
2017-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198280
|
5.5 |
MEDIUM
Local
|
sound_exchange_project debian
|
sound_exchange debian_linux
|
The startread function in wav.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted wav file.
|
CWE-369
Divide By Zero
|
CVE-2017-11332
|
2024-11-21 12:07 |
2017-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|