CVE-2018-19801: Null Pointer Dereference
Published Jun 7, 2019
·Updated
aubio v0.4.0 to v0.4.8 has a NULL pointer dereference in newaubiofilterbank via invalid nfilters.
Other sources
aubio v0.4.0 to v0.4.8 has a NULL pointer dereference in newaubiofilterbank via invalid nfilters.
Affected Software
2 affected componentsFixes available
pip/aubio>=0.4.0<0.4.9
0.4.9
aubio aubio>=0.4.0<=0.4.8
Event History
Jun 7, 2019
CVE Published
via MITRE·04:37 PM
Data Sourced
via MITRE·04:37 PM
Description
Jul 26, 2019
Advisory Published
04:10 PM
Frequently Asked Questions
1
What is the severity of CVE-2018-19801?
The severity of CVE-2018-19801 is high with a CVSS score of 7.5.
2
How does CVE-2018-19801 affect aubio?
CVE-2018-19801 affects aubio versions 0.4.0 to 0.4.8.
3
What is the vulnerability in CVE-2018-19801?
CVE-2018-19801 is a NULL pointer dereference vulnerability in new_aubio_filterbank of aubio.
4
How can I fix CVE-2018-19801?
To fix CVE-2018-19801, update aubio to version 0.4.9.
5
Where can I find more information about CVE-2018-19801?
You can find more information about CVE-2018-19801 on the NIST National Vulnerability Database (NVD) and GitHub.