Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:25231
HistoryMay 10, 2020 - 11:21 p.m.

Arbitrary Code Execution

2020-05-1023:21:16
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

EPSS

0.009

Percentile

82.9%

wavpack is vulnerable to arbitrary code execution. A stack-based buffer over-read in the ParseRiffHeaderConfig function of cli/riff.c allows a remote attacker to execute arbitrary code on the system via a malicious RF64 file.