Un problema è stato scoperto nel Gratuito Advanced Audio Decoder 2 (FAAD2) 2.8.1. C’è un dereference puntatore NULL in ifilter_bank () in libfaad / filtbank.c. |
https://seclists.org/bugtraq/2019/Sep/28 https://www.debian.org/security/2019/dsa-4522 https://security.gentoo.org/glsa/202006-17 https://github.com/TeamSeri0us/pocs/tree/master/faad https://sourceforge.net/p/faac/bugs/240/ https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-19504 |
Vulnerabilità: CVE-2018-19504
