Libmysofa
Symonics · 15 CVEs
Heap-based Buffer Overflow in hoene/libmysofa
Oct 29, 2021
Buffer overflow in readDataVar in hdf/dataobject.c in Symonics libmysofa 0.5 - 1.1 allows attackers to execute arbitrar…
Feb 8, 2021
Incorrect handling of input data in mysofa_resampler_reset_mem function in the libmysofa library 0.5 - 1.1 will lead to…
Feb 8, 2021
Incorrect handling of input data in loudness function in the libmysofa library 0.5 - 1.1 will lead to heap buffer overf…
Feb 8, 2021
Incorrect handling of input data in changeAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL point…
Feb 8, 2021
Incorrect handling of input data in verifyAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL point…
Feb 8, 2021
libmysofa 0.9.1 has a stack-based buffer overflow in readDataVar in hdf/dataobject.c during the reading of a header mes…
Jan 13, 2020
hdf/dataobject.c in libmysofa before 0.8 has an uninitialized use of memory, as demonstrated by mysofa2json.
Dec 29, 2019
libmysofa before 2019-11-24 does not properly restrict recursive function calls, as demonstrated by reports of stack co…
Dec 27, 2019
Symonics libmysofa 0.7 has an out-of-bounds read in directblockRead in hdf/fractalhead.c.
Sep 8, 2019
Symonics libmysofa 0.7 has a NULL pointer dereference in getHrtf in hrtf/reader.c.
Sep 8, 2019
Symonics libmysofa 0.7 has an invalid write in readOHDRHeaderMessageDataLayout in hdf/dataobject.c.
Sep 8, 2019
Symonics libmysofa 0.7 has an invalid read in readOHDRHeaderMessageDataLayout in hdf/dataobject.c.
Sep 8, 2019
Symonics libmysofa 0.7 has an invalid read in getDimension in hrtf/reader.c.
Sep 8, 2019
treeRead in hdf/btree.c in libmysofa before 0.7 does not properly validate multiplications and additions.
Mar 31, 2019
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2021-3756 | Heap-based Buffer Overflow in hoene/libmysofa | CRITICAL | 1.07% | Oct 29, 2021 |
| CVE-2020-36152 | Buffer overflow in readDataVar in hdf/dataobject.c in Symonics libmysofa 0.5 - 1.1 allows attackers to execute arbitrary code via a crafted SOFA. | HIGH | 2.27% | Feb 8, 2021 |
| CVE-2020-36151 | Incorrect handling of input data in mysofa_resampler_reset_mem function in the libmysofa library 0.5 - 1.1 will lead to heap buffer overflow and overwriting la… | MEDIUM | 1.23% | Feb 8, 2021 |
| CVE-2020-36150 | Incorrect handling of input data in loudness function in the libmysofa library 0.5 - 1.1 will lead to heap buffer overflow and access to unallocated memory blo… | MEDIUM | 1.23% | Feb 8, 2021 |
| CVE-2020-36149 | Incorrect handling of input data in changeAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault er… | MEDIUM | 1.16% | Feb 8, 2021 |
| CVE-2020-36148 | Incorrect handling of input data in verifyAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault er… | MEDIUM | 1.15% | Feb 8, 2021 |
| CVE-2020-6860 | libmysofa 0.9.1 has a stack-based buffer overflow in readDataVar in hdf/dataobject.c during the reading of a header message attribute. | HIGH | 1.68% | Jan 13, 2020 |
| CVE-2019-20063 | hdf/dataobject.c in libmysofa before 0.8 has an uninitialized use of memory, as demonstrated by mysofa2json. | HIGH | 1.45% | Dec 29, 2019 |
| CVE-2019-20016 | libmysofa before 2019-11-24 does not properly restrict recursive function calls, as demonstrated by reports of stack consumption in readOHDRHeaderMessageDataty… | MEDIUM | 1.95% | Dec 27, 2019 |
| CVE-2019-16091 | Symonics libmysofa 0.7 has an out-of-bounds read in directblockRead in hdf/fractalhead.c. | HIGH | 1.35% | Sep 8, 2019 |
| CVE-2019-16092 | Symonics libmysofa 0.7 has a NULL pointer dereference in getHrtf in hrtf/reader.c. | CRITICAL | 1.53% | Sep 8, 2019 |
| CVE-2019-16093 | Symonics libmysofa 0.7 has an invalid write in readOHDRHeaderMessageDataLayout in hdf/dataobject.c. | CRITICAL | 1.53% | Sep 8, 2019 |
| CVE-2019-16094 | Symonics libmysofa 0.7 has an invalid read in readOHDRHeaderMessageDataLayout in hdf/dataobject.c. | HIGH | 1.35% | Sep 8, 2019 |
| CVE-2019-16095 | Symonics libmysofa 0.7 has an invalid read in getDimension in hrtf/reader.c. | HIGH | 1.35% | Sep 8, 2019 |
| CVE-2019-10672 | treeRead in hdf/btree.c in libmysofa before 0.7 does not properly validate multiplications and additions. | CRITICAL | 2.37% | Mar 31, 2019 |
Showing 1 to 15 of 15 CVEs