CVE-2020-36150: Buffer Overflow
Published Feb 8, 2021
·Updated
Incorrect handling of input data in loudness function in the libmysofa library 0.5 - 1.1 will lead to heap buffer overflow and access to unallocated memory block.
Affected Software
2 affected components
Symonics libmysofa>=0.5<=1.1
Fedoraproject Fedora=32
Remediation
Patch Available
Event History
Feb 8, 2021
CVE Published
via MITRE·08:13 PM
Data Sourced
via MITRE·08:13 PM
Description
Frequently Asked Questions
1
What is CVE-2020-36150?
CVE-2020-36150 is a vulnerability that occurs due to incorrect handling of input data in the loudness function in the libmysofa library.
2
How severe is CVE-2020-36150?
CVE-2020-36150 has a severity rating of 6.5, which is considered medium.
3
Which software versions are affected by CVE-2020-36150?
The versions 0.5 to 1.1 of the Symonics libmysofa library and Fedora 32 are affected by CVE-2020-36150.
4
What is the impact of CVE-2020-36150?
CVE-2020-36150 can lead to a heap buffer overflow and access to unallocated memory block.
5
How can I fix CVE-2020-36150?
To fix CVE-2020-36150, it is recommended to update to a version of the libmysofa library that is not affected.