CVE-2017-17054: Divide by Zero
In aubio 0.4.6, a divide-by-zero error exists in the function newaubiosourcewavread() in sourcewavread.c, which may lead to DoS when playing a crafted audio file.
Other sources
In aubio 0.4.6, a divide-by-zero error exists in the function newaubiosourcewavread() in sourcewavread.c, which may lead to DoS when playing a crafted audio file.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2017-17054?
CVE-2017-17054 is a vulnerability in aubio 0.4.6 that allows for a divide-by-zero error, leading to denial of service (DoS) when playing a crafted audio file.
How severe is CVE-2017-17054?
CVE-2017-17054 has a severity rating of 5.5 (High).
What software is affected by CVE-2017-17054?
aubio versions 0.4.6 and earlier are affected by CVE-2017-17054.
How can I fix CVE-2017-17054?
To fix CVE-2017-17054, upgrade to aubio version 0.4.7 or later.
Where can I find more information about CVE-2017-17054?
You can find more information about CVE-2017-17054 at the following references: [link1](https://github.com/aubio/aubio/issues/148), [link2](https://security-tracker.debian.org/tracker/CVE-2017-17054), [link3](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-17054)