NULL Pointer Dereference Vulnerability in Audiofile Library 0.3.6

NULL Pointer Dereference Vulnerability in Audiofile Library 0.3.6

CVE-2018-13440 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:N/A:P

The audiofile Audio File Library 0.3.6 has a NULL pointer dereference bug in ModuleState::setup in modules/ModuleState.cpp, which allows an attacker to cause a denial of service via a crafted caf file, as demonstrated by sfconvert.

Learn more about our Web Application Penetration Testing UK.