CVE-2018-19800: Buffer Overflow
Published Jun 7, 2019
·Updated
aubio v0.4.0 to v0.4.8 has a Buffer Overflow in newaubiotempo.
Other sources
aubio v0.4.0 to v0.4.8 has a Buffer Overflow in newaubiotempo.
Affected Software
2 affected componentsFixes available
pip/aubio>=0.4.0<0.4.9
0.4.9
aubio aubio>=0.4.0<=0.4.8
Event History
Jun 7, 2019
CVE Published
via MITRE·04:38 PM
Data Sourced
via MITRE·04:38 PM
Description
Jul 26, 2019
Advisory Published
04:10 PM
Frequently Asked Questions
1
What is CVE-2018-19800?
CVE-2018-19800 is a vulnerability in the Aubio library versions 0.4.0 to 0.4.8 that allows for buffer overflow in the 'new_aubio_tempo' function.
2
How severe is CVE-2018-19800?
CVE-2018-19800 has a severity score of 9.8 (Critical).
3
What is the affected software?
The affected software includes the aubio library versions 0.4.0 to 0.4.8.
4
How can I fix CVE-2018-19800?
To fix CVE-2018-19800, update your Aubio library to version 0.4.9 or later.
5
What is the Common Weakness Enumeration (CWE) for CVE-2018-19800?
The CWE for CVE-2018-19800 is CWE-119 (Improper Restriction of Operations within the Bounds of a Memory Buffer).