5.5
CVSSv3

CVE-2017-9258

Published: 27/07/2017 Updated: 03/10/2019
CVSS v2 Base Score: 7.1 | Impact Score: 6.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 715
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C

Vulnerability Summary

The TDStretch::processSamples function in source/SoundTouch/TDStretch.cpp in SoundTouch 1.9.2 allows remote malicious users to cause a denial of service (infinite loop and CPU consumption) via a crafted wav file.

Vulnerable Product Search on Vulmon Subscribe to Product

surina soundtouch 1.9.2

Vendor Advisories

Debian Bug report logs - #870857 soundtouch: CVE-2017-9260 Package: src:soundtouch; Maintainer for src:soundtouch is Debian Multimedia Maintainers <debian-multimedia@listsdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 5 Aug 2017 19:48:16 UTC Severity: important Tags: security, upstrea ...
Debian Bug report logs - #870856 soundtouch: CVE-2017-9259 Package: src:soundtouch; Maintainer for src:soundtouch is Debian Multimedia Maintainers <debian-multimedia@listsdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 5 Aug 2017 19:48:08 UTC Severity: important Tags: security, upstrea ...
Debian Bug report logs - #870854 soundtouch: CVE-2017-9258 Package: src:soundtouch; Maintainer for src:soundtouch is Debian Multimedia Maintainers <debian-multimedia@listsdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 5 Aug 2017 19:48:02 UTC Severity: important Tags: security, upstrea ...

Exploits

SoundTouch multiple vulnerabilities ================ Author : qflbwu =============== Introduction: ============= SoundTouch is an open-source audio processing library for changing the Tempo, Pitch and Playback Rates of audio streams or audio files The library additionally supports estimating stable beats-per-minute rates for audio tracks Aff ...