aubio v0.4.0 to v0.4.8 has a Buffer Overflow in newaubiotempo.
An issue was discovered in aubio 0.4.6. A SEGV signal can occur in aubiosourceavcodecreadframe in io/sourceavcodec.c, as demonstrated by aubiomfcc.
An issue was discovered in aubio 0.4.6. A SEGV signal can occur in aubiopitchsetunit in pitch/pitch.c, as demonstrated by aubionotes.
An issue was discovered in aubio 0.4.6. A buffer over-read can occur in newaubiopitchyinfft in pitch/pitchyinfft.c when the samplerate of the input file is larger than 50kHz.
The mintToken function of a smart contract implementation for Ubiou, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
aubio v0.4.0 to v0.4.8 has a newaubioonset NULL pointer dereference in newaubionotes function within src/notes/notes.c.
aubio v0.4.0 to v0.4.8 has a NULL pointer dereference in newaubiofilterbank via invalid nfilters.
A NULL pointer dereference (DoS) Vulnerability was found in the function aubiosourceavcodecreadframe in io/sourceavcodec.c of aubio, which may lead to DoS when playing a crafted audio file.