Red Hat Bugzilla – Bug 1631064
CVE-2018-17098 soundtouch: Heap corruption in WavFileBase class in WavFile.cpp
Last modified: 2018-09-19 16:12:12 EDT
The WavFileBase class in WavFile.cpp in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (heap corruption from size inconsistency) or possibly have unspecified other impact, as demonstrated by SoundStretch. Upstream issue: https://gitlab.com/soundtouch/soundtouch/issues/14 References: https://github.com/TeamSeri0us/pocs/tree/master/soundtouch/2018_09_03
Created soundtouch tracking bugs for this issue: Affects: epel-6 [bug 1631066] Affects: fedora-all [bug 1631065]