In autofile Audio File Library 0.3.6, there exists one memory leak vulnerability in printfileinfo, in printinfo.c, which allows an attacker to leak sensitive information via a crafted file. The printfileinfo function calls the copyrightstring function to get data, however, it dosnt use zero bytes to truncate the data.
The product does not sufficiently track and release allocated memory after it has been used, which slowly consumes remaining memory.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Audio_file_library | Audio_file_library_project | 0.3.6 (including) | 0.3.6 (including) |
Audiofile | Ubuntu | bionic | * |
Audiofile | Ubuntu | esm-apps/bionic | * |
Audiofile | Ubuntu | esm-apps/xenial | * |
Audiofile | Ubuntu | focal | * |
Audiofile | Ubuntu | impish | * |
Audiofile | Ubuntu | jammy | * |
Audiofile | Ubuntu | kinetic | * |
Audiofile | Ubuntu | lunar | * |
Audiofile | Ubuntu | mantic | * |
Audiofile | Ubuntu | trusty | * |
Audiofile | Ubuntu | trusty/esm | * |
Audiofile | Ubuntu | xenial | * |