2.9
CVSSv2

CVE-2014-3970

Published: 11/06/2014 Updated: 07/01/2017
CVSS v2 Base Score: 2.9 | Impact Score: 2.9 | Exploitability Score: 5.5
VMScore: 258
Vector: AV:A/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

The pa_rtp_recv function in modules/rtp/rtp.c in the module-rtp-recv module in PulseAudio 5.0 and previous versions allows remote malicious users to cause a denial of service (assertion failure and abort) via an empty UDP packet.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

pulseaudio pulseaudio 2.0

pulseaudio pulseaudio 1.99.2

pulseaudio pulseaudio 5.0

pulseaudio pulseaudio 4.0

pulseaudio pulseaudio 1.99.1

pulseaudio pulseaudio 1.1

pulseaudio pulseaudio 1.0

pulseaudio pulseaudio 3.0

pulseaudio pulseaudio 2.1

Vendor Advisories

The pa_rtp_recv function in modules/rtp/rtpc in the module-rtp-recv module in PulseAudio 50 and earlier allows remote attackers to cause a denial of service (assertion failure and abort) via an empty UDP packet ...