Lucene search

K
cvelistMitreCVELIST:CVE-2017-16868
HistoryNov 17, 2017 - 9:00 a.m.

CVE-2017-16868

2017-11-1709:00:00
mitre
www.cve.org
1

AI Score

5.5

Confidence

High

EPSS

0.001

Percentile

41.0%

In SWFTools 0.9.2, the wav_convert2mono function in lib/wav.c does not properly restrict a multiplication within a malloc call, which allows remote attackers to cause a denial of service (integer overflow and NULL pointer dereference) via a crafted WAV file.

AI Score

5.5

Confidence

High

EPSS

0.001

Percentile

41.0%

Related for CVELIST:CVE-2017-16868