CVE-2020-35738

Published
View on NVD ↗
CVSS v3
6.1
MEDIUM
CVSS v2
5.8
MEDIUM
Affected
1
PROJECT

Description

WavPack 5.3.0 has an out-of-bounds write in WavpackPackSamples in pack_utils.c because of an integer overflow in a malloc argument. NOTE: some third-parties claim that there are later "unofficial" releases through 5.3.2, which are also affected.

WavPack encode/decode library, command-line programs, and several plugins
GitHubGitHub
462