CVE-2019-13147
published 2019-07-02CVE-2019-13147: In Audio File Library (aka audiofile) 0.3.6, there exists one NULL pointer dereference bug in ulaw2linear_buf in G711.cpp in libmodules.a that allows an…
PriorityP426medium6.5CVSS 3.1
AVNACLPRNUIRSUCNINAH
EPSS
1.91%
77.5th percentile
In Audio File Library (aka audiofile) 0.3.6, there exists one NULL pointer dereference bug in ulaw2linear_buf in G711.cpp in libmodules.a that allows an attacker to cause a denial of service via a crafted file.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| audiofile | audiofile | — | — |
| audiofile | audiofile | >= 0 < 0.3.6-5+deb11u1 | 0.3.6-5+deb11u1 |
| audiofile | audiofile | >= 0 < 0.3.6-5+deb12u1 | 0.3.6-5+deb12u1 |
| audiofile | audiofile | >= 0 < 0.3.6-6 | 0.3.6-6 |
| audiofile | audiofile | >= 0 < 0.3.6-6 | 0.3.6-6 |
| audiofile | audiofile | >= 0 < 0.3.6-5+deb10u1build0.20.04.1 | 0.3.6-5+deb10u1build0.20.04.1 |
| audiofile | audiofile | >= 0 < 0.3.6-5+deb10u1build0.22.04.1 | 0.3.6-5+deb10u1build0.22.04.1 |
| audiofile | audiofile | >= 0 < 0.3.6-2ubuntu0.14.04.3+esm1 | 0.3.6-2ubuntu0.14.04.3+esm1 |
| audiofile | audiofile | >= 0 < 0.3.6-2ubuntu0.16.04.1+esm1 | 0.3.6-2ubuntu0.16.04.1+esm1 |
| audiofile | audiofile | >= 0 < 0.3.6-4ubuntu0.1~esm1 | 0.3.6-4ubuntu0.1~esm1 |
| debian | audiofile | < audiofile 0.3.6-5+deb12u1 (bookworm) | audiofile 0.3.6-5+deb12u1 (bookworm) |
| debian | debian_linux | — | — |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv6.5MEDIUM
vendor_debian6.5MEDIUM
vendor_ubuntu6.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
audiofile vulnerabilities
vendor_ubuntu·2023-12-14·CVSS 6.5
CVE-2018-17095 [MEDIUM] audiofile vulnerabilities
Title: audiofile vulnerabilities
Summary: Several security issues were fixed in audiofile.
It was discovered that audiofile could be made to dereference invalid
memory. If a user or an automated system were tricked into opening a
specially crafted file, an attacker could possibly use this issue to cause
a denial of service. This issue only affected Ubuntu 16.04 LTS and Ubuntu
18.04 LTS. (CVE-2018-13440)
It was discovered that audiofile could be made to write out of bounds. If a
user or an automated system were tricked into opening a specially crafted
file, an attacker could possibly use this issue to cause a denial of
service or execute arbitrary code. This issue only affected Ubuntu 16.04
LTS and Ubuntu 18.04 LTS. (CVE-2018-17095)
It was discovered that audiofile could be made to dere
Red Hat
audiofile: a NULL pointer dereference in ulaw2linear_buf in G711.cpp in libmodules.a leading to DoS
vendor_redhat·2019-06-30·CVSS 5.5
CVE-2019-13147 [MEDIUM] CWE-476 audiofile: a NULL pointer dereference in ulaw2linear_buf in G711.cpp in libmodules.a leading to DoS
audiofile: a NULL pointer dereference in ulaw2linear_buf in G711.cpp in libmodules.a leading to DoS
In Audio File Library (aka audiofile) 0.3.6, there exists one NULL pointer dereference bug in ulaw2linear_buf in G711.cpp in libmodules.a that allows an attacker to cause a denial of service via a crafted file.
Statement: This flaw was found to be a duplicate of CVE-2017-6838. Please see https://access.redhat.com/security/cve/CVE-2017-6838 for information about affected products and security errata.
Package: audiofile (Red Hat Enterprise Linux 5) - Not affected
Package: audiofile (Red Hat Enterprise Linux 6) - Not affected
Package: audiofile (Red Hat Enterprise Linux 7) - Not affected
Debian
CVE-2019-13147: audiofile - In Audio File Library (aka audiofile) 0.3.6, there exists one NULL pointer deref...
vendor_debian·2019·CVSS 6.5
CVE-2019-13147 [MEDIUM] CVE-2019-13147: audiofile - In Audio File Library (aka audiofile) 0.3.6, there exists one NULL pointer deref...
In Audio File Library (aka audiofile) 0.3.6, there exists one NULL pointer dereference bug in ulaw2linear_buf in G711.cpp in libmodules.a that allows an attacker to cause a denial of service via a crafted file.
Scope: local
bookworm: resolved (fixed in 0.3.6-5+deb12u1)
bullseye: resolved (fixed in 0.3.6-5+deb11u1)
forky: resolved (fixed in 0.3.6-6)
sid: resolved (fixed in 0.3.6-6)
trixie: resolved (fixed in 0.3.6-6)
OSV
audiofile vulnerabilities
osv·2023-12-14·CVSS 6.5
CVE-2018-13440 [MEDIUM] audiofile vulnerabilities
audiofile vulnerabilities
It was discovered that audiofile could be made to dereference invalid
memory. If a user or an automated system were tricked into opening a
specially crafted file, an attacker could possibly use this issue to cause
a denial of service. This issue only affected Ubuntu 16.04 LTS and Ubuntu
18.04 LTS. (CVE-2018-13440)
It was discovered that audiofile could be made to write out of bounds. If a
user or an automated system were tricked into opening a specially crafted
file, an attacker could possibly use this issue to cause a denial of
service or execute arbitrary code. This issue only affected Ubuntu 16.04
LTS and Ubuntu 18.04 LTS. (CVE-2018-17095)
It was discovered that audiofile could be made to dereference invalid
memory. If a user or an automated system were tric
GHSA
GHSA-f72j-hf57-7h84: In Audio File Library (aka audiofile) 0
ghsa_unreviewed·2022-05-24
CVE-2019-13147 [MEDIUM] CWE-476 GHSA-f72j-hf57-7h84: In Audio File Library (aka audiofile) 0
In Audio File Library (aka audiofile) 0.3.6, there exists one NULL pointer dereference bug in ulaw2linear_buf in G711.cpp in libmodules.a that allows an attacker to cause a denial of service via a crafted file.
OSV
CVE-2019-13147: In Audio File Library (aka audiofile) 0
osv·2019-07-02·CVSS 6.5
CVE-2019-13147 [MEDIUM] CVE-2019-13147: In Audio File Library (aka audiofile) 0
In Audio File Library (aka audiofile) 0.3.6, there exists one NULL pointer dereference bug in ulaw2linear_buf in G711.cpp in libmodules.a that allows an attacker to cause a denial of service via a crafted file.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2019-13147 audiofile: a NULL pointer dereference in ulaw2linear_buf in G711.cpp in libmodules.a leading to DoS [fedora-all]
bugzilla·2019-07-02·CVSS 6.5
CVE-2019-13147 [MEDIUM] CVE-2019-13147 audiofile: a NULL pointer dereference in ulaw2linear_buf in G711.cpp in libmodules.a leading to DoS [fedora-all]
CVE-2019-13147 audiofile: a NULL pointer dereference in ulaw2linear_buf in G711.cpp in libmodules.a leading to DoS [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NO
Bugzilla
CVE-2019-13147 audiofile: a NULL pointer dereference in ulaw2linear_buf in G711.cpp in libmodules.a leading to DoS
bugzilla·2019-07-02·CVSS 5.5
CVE-2019-13147 [MEDIUM] CVE-2019-13147 audiofile: a NULL pointer dereference in ulaw2linear_buf in G711.cpp in libmodules.a leading to DoS
CVE-2019-13147 audiofile: a NULL pointer dereference in ulaw2linear_buf in G711.cpp in libmodules.a leading to DoS
In Audio File Library (aka audiofile) 0.3.6, there exists one NULL pointer dereference bug in ulaw2linear_buf in G711.cpp in libmodules.a that allows an attacker to cause a denial of service via a crafted file.
Upstream Issue:
https://github.com/mpruett/audiofile/issues/54
Discussion:
Created audiofile tracking bugs for this issue:
Affects: fedora-all [bug 1726068]
---
This may be a duplicate of the existing bugs about ulaw2linear_buf
https://github.com/mpruett/audiofile/issues?utf8=%E2%9C%93&q=ulaw2linear_buf
---
There is an integer overflow within the copyaudiodata() function in sfcommands/sfconvert.c when multiplying malloc(kBufferFrameCount * frameSize);
Combine
2019-07-02
Published