Back to bug 2110455

Who When What Removed Added
TEJ RATHI 2022-07-25 12:28:57 UTC Blocks 2109695
TEJ RATHI 2022-07-25 12:30:53 UTC CC rh-spice-bugs, valtri
TEJ RATHI 2022-07-25 12:35:11 UTC Summary CVE-2022-2476 wavpack: null pointer dereference in main() CVE-2022-2476 wavpack: null pointer dereference in main() in cli/wvunpack.c
TEJ RATHI 2022-07-25 12:35:49 UTC Fixed In Version WavPack 5.5.0
TEJ RATHI 2022-07-25 12:36:56 UTC Depends On 2110458, 2110459
TEJ RATHI 2022-07-29 13:33:27 UTC Depends On 2112360, 2112358, 2112359
FrantiĊĦek Hrdina 2022-08-01 05:00:32 UTC CC fhrdina
TEJ RATHI 2022-08-03 12:21:24 UTC Doc Text A null pointer dereference vulnerability was found in WavePack's main() function at cli/wvunpack.c. An attacker could trick a user into opening a crafted wavpack file that could cause an application to crash, thus causing a denial of service. The impact is on availability which is very low.
RaTasha Tillery-Smith 2022-08-04 13:29:41 UTC Doc Text A null pointer dereference vulnerability was found in WavePack's main() function at cli/wvunpack.c. An attacker could trick a user into opening a crafted wavpack file that could cause an application to crash, thus causing a denial of service. The impact is on availability which is very low. A NULL pointer dereference vulnerability was found in WavePack's main() function at cli/wvunpack.c. This flaw allows an attacker to trick a user into opening a crafted wavpack file that could cause an application to crash, causing a denial of service.
Sergio Basto 2022-11-22 16:14:46 UTC CC sergio
Red Hat Bugzilla 2023-07-07 08:30:16 UTC Assignee security-response-team nobody

Back to bug 2110455