Vulnerabilities
Vulnerable Software
Audacityteam:  >> Audacity  >> 1.3.0  Security Vulnerabilities
Audacity through 2.3.3 saves temporary files to /var/tmp/audacity-$USER by default. After Audacity creates the temporary directory, it sets its permissions to 755. Any user on the system can read and play the temporary audio .au files located there.
CVSS Score
3.3
EPSS Score
0.001
Published
2020-11-30
Audacity before 2.1.2 allows remote attackers to cause a denial of service (memory corruption and application crash) via a crafted FORMATCHUNK structure.
CVSS Score
5.5
EPSS Score
0.009
Published
2018-02-07
Audacity before 2.1.2 allows remote attackers to cause a denial of service (memory corruption and application crash) via a crafted MP2 file.
CVSS Score
5.5
EPSS Score
0.006
Published
2018-02-07
Stack-based buffer overflow in the String_parse::get_nonspace_quoted function in lib-src/allegro/strparse.cpp in Audacity 1.2.6 and other versions before 1.3.6 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a .gro file containing a long string.
CVSS Score
9.3
EPSS Score
0.567
Published
2009-02-10


Contact Us

Shodan ® - All rights reserved