CVE-2012-6303

Source
https://nvd.nist.gov/vuln/detail/CVE-2012-6303
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2012-6303.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2012-6303
Related
Published
2013-10-28T22:55:03Z
Modified
2024-11-21T01:45:59Z
Summary
[none]
Details

Heap-based buffer overflow in the GetWavHeader function in generic/jkSoundFile.c in the Snack Sound Toolkit, as used in WaveSurfer 1.8.8p4, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large chunk size in a WAV file.

References

Affected packages

Debian:11 / snack

Package

Name
snack
Purl
pkg:deb/debian/snack?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.2.10-dfsg1-12.1

Ecosystem specific

{
    "urgency": "low"
}

Debian:12 / snack

Package

Name
snack
Purl
pkg:deb/debian/snack?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.2.10-dfsg1-12.1

Ecosystem specific

{
    "urgency": "low"
}

Debian:13 / snack

Package

Name
snack
Purl
pkg:deb/debian/snack?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.2.10-dfsg1-12.1

Ecosystem specific

{
    "urgency": "low"
}