Vulnerabilities
Vulnerable Software
Symonics:  >> Libmysofa  Security Vulnerabilities
libmysofa is vulnerable to Heap-based Buffer Overflow
CVSS Score
6.2
EPSS Score
0.003
Published
2021-10-29
Incorrect handling of input data in verifyAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault error in case of restrictive memory protection or near NULL pointer overwrite in case of no memory restrictions (e.g. in embedded environments).
CVSS Score
6.5
EPSS Score
0.003
Published
2021-02-08
Incorrect handling of input data in changeAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault error in case of restrictive memory protection or near NULL pointer overwrite in case of no memory restrictions (e.g. in embedded environments).
CVSS Score
6.5
EPSS Score
0.003
Published
2021-02-08
Incorrect handling of input data in loudness function in the libmysofa library 0.5 - 1.1 will lead to heap buffer overflow and access to unallocated memory block.
CVSS Score
6.5
EPSS Score
0.003
Published
2021-02-08
Incorrect handling of input data in mysofa_resampler_reset_mem function in the libmysofa library 0.5 - 1.1 will lead to heap buffer overflow and overwriting large memory block.
CVSS Score
6.5
EPSS Score
0.003
Published
2021-02-08
Buffer overflow in readDataVar in hdf/dataobject.c in Symonics libmysofa 0.5 - 1.1 allows attackers to execute arbitrary code via a crafted SOFA.
CVSS Score
8.8
EPSS Score
0.014
Published
2021-02-08
libmysofa 0.9.1 has a stack-based buffer overflow in readDataVar in hdf/dataobject.c during the reading of a header message attribute.
CVSS Score
8.8
EPSS Score
0.005
Published
2020-01-13
hdf/dataobject.c in libmysofa before 0.8 has an uninitialized use of memory, as demonstrated by mysofa2json.
CVSS Score
8.8
EPSS Score
0.004
Published
2019-12-29
libmysofa before 2019-11-24 does not properly restrict recursive function calls, as demonstrated by reports of stack consumption in readOHDRHeaderMessageDatatype in dataobject.c and directblockRead in fractalhead.c. NOTE: a download of v0.9 after 2019-12-06 should fully remediate this issue.
CVSS Score
6.5
EPSS Score
0.005
Published
2019-12-27
Symonics libmysofa 0.7 has an invalid read in getDimension in hrtf/reader.c.
CVSS Score
7.5
EPSS Score
0.004
Published
2019-09-08


Contact Us

Shodan ® - All rights reserved