Vulnerabilities > Audacityteam > Audacity > 1.3.2

DATE CVE VULNERABILITY TITLE RISK
2020-11-30 CVE-2020-11867 Incorrect Default Permissions vulnerability in multiple products
Audacity through 2.3.3 saves temporary files to /var/tmp/audacity-$USER by default.
local
low complexity
audacityteam fedoraproject CWE-276
3.3
2018-02-07 CVE-2016-2541 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Audacityteam Audacity
Audacity before 2.1.2 allows remote attackers to cause a denial of service (memory corruption and application crash) via a crafted MP2 file.
4.3
2018-02-07 CVE-2016-2540 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Audacityteam Audacity
Audacity before 2.1.2 allows remote attackers to cause a denial of service (memory corruption and application crash) via a crafted FORMATCHUNK structure.
4.3
2007-11-20 CVE-2007-6061 Link Following vulnerability in Audacityteam Audacity 1.3.2
Audacity 1.3.2 creates a temporary directory with a predictable name without checking for previous existence of that directory, which allows local users to cause a denial of service (recording deadlock) by creating the directory before Audacity is run.
network
low complexity
audacityteam CWE-59
5.0