CVE-2018-7253Out-of-bounds Read in Wavpack

Severity
7.8HIGHNVD
EPSS
0.9%
top 24.03%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 19
Latest updateMay 13

Description

The ParseDsdiffHeaderConfig function of the cli/dsdiff.c file of WavPack 5.1.0 allows a remote attacker to cause a denial-of-service (heap-based buffer over-read) or possibly overwrite the heap via a maliciously crafted DSDIFF file.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages3 packages

debiandebian/wavpack< wavpack 5.1.0-3 (bookworm)
Debianwavpack/wavpack< 5.1.0-3+3
NVDwavpack/wavpack5.1.0

Also affects: Debian Linux 9.0, Ubuntu Linux 17.10

Patches

🔴Vulnerability Details

2
GHSA
GHSA-6jpw-q5h3-rgmr: The ParseDsdiffHeaderConfig function of the cli/dsdiff2022-05-13
OSV
CVE-2018-7253: The ParseDsdiffHeaderConfig function of the cli/dsdiff2018-02-19

📋Vendor Advisories

3
Ubuntu
WavPack vulnerabilities2018-02-22
Red Hat
wavpack: Heap-based buffer over-read in ParseDsdiffHeaderConfig function in cli/dsdiff.c2018-02-19
Debian
CVE-2018-7253: wavpack - The ParseDsdiffHeaderConfig function of the cli/dsdiff.c file of WavPack 5.1.0 a...2018

📄Research Papers

1
arXiv
Code-less Patching for Heap Vulnerabilities Using Targeted Calling Context Encoding2018-12-11

💬Community

4
Bugzilla
CVE-2018-7253 wavpack: Heap-based buffer over-read in ParseDsdiffHeaderConfig function in cli/dsdiff.c2018-02-21
Bugzilla
CVE-2018-7253 mingw-wavpack: wavpack: Heap-based buffer over-read in ParseDsdiffHeaderConfig function in cli/dsdiff.c [fedora-all]2018-02-21
Bugzilla
CVE-2018-7253 wavpack: Heap-based buffer over-read in ParseDsdiffHeaderConfig function in cli/dsdiff.c [fedora-all]2018-02-21
Bugzilla
CVE-2018-7253 mingw-wavpack: wavpack: Heap-based buffer over-read in ParseDsdiffHeaderConfig function in cli/dsdiff.c [epel-7]2018-02-21