cbcvebase.

Linuxsampler Libgig vulnerabilities

23 known vulnerabilities affecting linuxsampler/libgig.

Total CVEs
23
CISA KEV
0
Public exploits
5
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH15MEDIUM7

Vulnerabilities

Page 1 of 2
CVE-2017-12951P4MEDIUMCVSS 6.5PoC≥ 0, < 4.0.0-52017-08-28
CVE-2017-12951 [MEDIUM] CVE-2017-12951: The gig::DimensionRegion::CreateVelocityTable function in gig The gig::DimensionRegion::CreateVelocityTable function in gig.cpp in libgig 4.0.0 allows remote attackers to cause a denial of service (stack-based buffer over-read and application crash) via a crafted gig file.
osv
CVE-2017-12950P4MEDIUMCVSS 6.5PoCv4.0.02017-08-28
CVE-2017-12950 [MEDIUM] CWE-476 CVE-2017-12950: The gig::Region::Region function in gig.cpp in libgig 4.0.0 allows remote attackers to cause a denia The gig::Region::Region function in gig.cpp in libgig 4.0.0 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted gig file.
nvdosv
CVE-2017-12952P4MEDIUMCVSS 6.5PoC≥ 0, < 4.0.0-42017-08-28
CVE-2017-12952 [MEDIUM] CVE-2017-12952: The LoadString function in helper The LoadString function in helper.h in libgig 4.0.0 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted gig file.
osv
CVE-2017-12953P4MEDIUMCVSS 6.5PoC≥ 0, < 4.0.0-42017-08-28
CVE-2017-12953 [MEDIUM] CVE-2017-12953: The gig::Instrument::UpdateRegionKeyTable function in gig The gig::Instrument::UpdateRegionKeyTable function in gig.cpp in libgig 4.0.0 allows remote attackers to cause a denial of service (invalid memory write and application crash) via a crafted gig file.
osv
CVE-2017-12954P4MEDIUMCVSS 6.5PoC≥ 0, < 4.0.0-52017-08-28
CVE-2017-12954 [MEDIUM] CVE-2017-12954: The gig::Region::GetSampleFromWavePool function in gig The gig::Region::GetSampleFromWavePool function in gig.cpp in libgig 4.0.0 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted gig file.
osv
CVE-2021-32294P3HIGHCVSS 8.8≤ 202005072021-09-20
CVE-2021-32294 [HIGH] CWE-787 CVE-2021-32294: An issue was discovered in libgig through 20200507. A heap-buffer-overflow exists in the function RI An issue was discovered in libgig through 20200507. A heap-buffer-overflow exists in the function RIFF::List::GetSubList located in RIFF.cpp. It allows an attacker to cause code Execution.
nvd
CVE-2018-14459P3HIGHCVSS 8.8v4.1.02018-07-20
CVE-2018-14459 [HIGH] CWE-787 CVE-2018-14459: An issue was discovered in libgig 4.1.0. There is an out-of-bounds write in pData[0] access in the f An issue was discovered in libgig 4.1.0. There is an out-of-bounds write in pData[0] access in the function store16 in helper.h.
nvd
CVE-2018-14455P3HIGHCVSS 8.8v4.1.02018-07-20
CVE-2018-14455 [HIGH] CWE-787 CVE-2018-14455: An issue was discovered in libgig 4.1.0. There is an out-of-bounds write in pData[0] access in the f An issue was discovered in libgig 4.1.0. There is an out-of-bounds write in pData[0] access in the function store32 in helper.h.
nvd
CVE-2018-18197P3CRITICALCVSS 9.8v4.1.02018-10-09
CVE-2018-18197 [CRITICAL] CWE-119 CVE-2018-18197: An issue was discovered in libgig 4.1.0. There is an operator new[] failure (due to a big pSampleLoo An issue was discovered in libgig 4.1.0. There is an operator new[] failure (due to a big pSampleLoops heap request) in DLS::Sampler::Sampler in DLS.cpp.
nvd
CVE-2018-14456P3HIGHCVSS 8.8v4.1.02018-07-20
CVE-2018-14456 [HIGH] CWE-787 CVE-2018-14456: An issue was discovered in libgig 4.1.0. There is an out-of-bounds write in the function DLS::Info:: An issue was discovered in libgig 4.1.0. There is an out-of-bounds write in the function DLS::Info::SaveString in DLS.cpp.
nvd
CVE-2018-14457P3HIGHCVSS 8.8v4.1.02018-07-20
CVE-2018-14457 [HIGH] CWE-787 CVE-2018-14457: An issue was discovered in libgig 4.1.0. There is an out-of-bounds write in the function DLS::Info:: An issue was discovered in libgig 4.1.0. There is an out-of-bounds write in the function DLS::Info::UpdateChunks in DLS.cpp.
nvd
CVE-2018-18193P3HIGHCVSS 8.8v4.1.02018-10-09
CVE-2018-18193 [HIGH] CWE-119 CVE-2018-18193: An issue was discovered in libgig 4.1.0. There is operator new[] failure (due to a big pWavePoolTabl An issue was discovered in libgig 4.1.0. There is operator new[] failure (due to a big pWavePoolTable heap request) in DLS::File::File in DLS.cpp.
nvd
CVE-2018-14458P3HIGHCVSS 8.8v4.1.02018-07-20
CVE-2018-14458 [HIGH] CWE-787 CVE-2018-14458: An issue was discovered in libgig 4.1.0. There is a heap-based buffer overflow in pData[1] access in An issue was discovered in libgig 4.1.0. There is a heap-based buffer overflow in pData[1] access in the function store32 in helper.h.
nvd
CVE-2018-14453P3HIGHCVSS 8.8v4.1.02018-07-20
CVE-2018-14453 [HIGH] CWE-787 CVE-2018-14453: An issue was discovered in libgig 4.1.0. There is a heap-based buffer overflow in pData[1] access in An issue was discovered in libgig 4.1.0. There is a heap-based buffer overflow in pData[1] access in the function store16 in helper.h.
nvd
CVE-2018-14449P4HIGHCVSS 8.8v4.1.02018-07-20
CVE-2018-14449 [HIGH] CWE-125 CVE-2018-14449: An issue was discovered in libgig 4.1.0. There is an out of bounds read in gig::File::UpdateChunks i An issue was discovered in libgig 4.1.0. There is an out of bounds read in gig::File::UpdateChunks in gig.cpp.
nvd
CVE-2018-14452P4HIGHCVSS 8.8v4.1.02018-07-20
CVE-2018-14452 [HIGH] CWE-125 CVE-2018-14452: An issue was discovered in libgig 4.1.0. There is an out-of-bounds read in the "always assign the sa An issue was discovered in libgig 4.1.0. There is an out-of-bounds read in the "always assign the sample of the first dimension region of this region" feature of the function gig::Region::UpdateChunks in gig.cpp.
nvd
CVE-2018-14450P4HIGHCVSS 8.8v4.1.02018-07-20
CVE-2018-14450 [HIGH] CWE-125 CVE-2018-14450: An issue was discovered in libgig 4.1.0. There is an out-of-bounds read in the "update dimension reg An issue was discovered in libgig 4.1.0. There is an out-of-bounds read in the "update dimension region's chunks" feature of the function gig::Region::UpdateChunks in gig.cpp.
nvd
CVE-2018-14454P4HIGHCVSS 8.8v4.1.02018-07-20
CVE-2018-14454 [HIGH] CWE-125 CVE-2018-14454: An issue was discovered in libgig 4.1.0. There is an out-of-bounds read in the function RIFF::Chunk: An issue was discovered in libgig 4.1.0. There is an out-of-bounds read in the function RIFF::Chunk::Read in RIFF.cpp.
nvd
CVE-2018-14451P4HIGHCVSS 8.8v4.1.02018-07-20
CVE-2018-14451 [HIGH] CWE-787 CVE-2018-14451: An issue was discovered in libgig 4.1.0. There is a heap-based buffer overflow in the function RIFF: An issue was discovered in libgig 4.1.0. There is a heap-based buffer overflow in the function RIFF::Chunk::Read in RIFF.cpp.
nvd
CVE-2018-18196P4HIGHCVSS 8.8v4.1.02018-10-09
CVE-2018-18196 [HIGH] CWE-125 CVE-2018-18196: An issue was discovered in libgig 4.1.0. There is a heap-based buffer over-read in RIFF::List::GetLi An issue was discovered in libgig 4.1.0. There is a heap-based buffer over-read in RIFF::List::GetListTypeString in RIFF.cpp.
nvd
Linuxsampler Libgig vulnerabilities | cvebase