EPSS
Percentile
74.3%
wavpack is vulnerable to denial of service. The read_code function in read_words.c allows remote attackers to cause a denial of service (out-of-bounds read) via a malicious WV file.
read_code
read_words.c
www.openwall.com/lists/oss-security/2017/01/28/9
www.securityfocus.com/bid/95883
github.com/dbry/WavPack/commit/4bc05fc490b66ef2d45b1de26abf1455b486b0dc
security-tracker.debian.org/tracker/CVE-2016-10169
sourceforge.net/p/wavpack/mailman/message/35557889/
usn.ubuntu.com/3568-1/