Security Advisory

CVE-2017-16793

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-11-12 05:00:00
Last updated 2024-09-17 03:32:47
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The wav_convert2mono function in lib/wav.c in SWFTools 0.9.2 does not properly validate WAV data, which allows remote attackers to cause a denial of service (incorrect malloc and heap-based buffer overflow) or possibly have unspecified other impact via a crafted file.