First published: Mon Jul 23 2018(Updated: )
An issue was discovered in aubio 0.4.6. A SEGV signal can occur in `aubio_source_avcodec_readframe` in `io/source_avcodec.c`, as demonstrated by aubiomfcc.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
pip/aubio | <0.4.7 | 0.4.7 |
Aubio Aubio | =0.4.6 | |
debian/aubio | 0.4.9-4 0.4.9-4.3 0.4.9-4.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-14521 is high (8.8 out of 10).
CVE-2018-14521 occurs in `aubio_source_avcodec_readframe` in `io/source_avcodec.c`.
The affected software for CVE-2018-14521 is aubio 0.4.6, 0.4.9-4, 0.4.9-4.3, and 0.4.7.
To fix CVE-2018-14521, update aubio to version 0.4.7 or apply the appropriate remedy from the Debian or Pip source.
You can find more information about CVE-2018-14521 on GitHub, Debian Security Tracker, and NIST National Vulnerability Database.