Vulnerabilities > Libaacplus Project

DATE CVE VULNERABILITY TITLE RISK
2017-04-09 CVE-2017-7605 Reachable Assertion vulnerability in Libaacplus Project Libaacplus 2.0.2
aacplusenc.c in HE-AAC+ Codec (aka libaacplus) 2.0.2 has an assertion failure, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted audio file.
local
low complexity
libaacplus-project CWE-617
7.8
2017-04-09 CVE-2017-7604 Improper Input Validation vulnerability in Libaacplus Project Libaacplus 2.0.2
au_channel.h in HE-AAC+ Codec (aka libaacplus) 2.0.2 has a left-shift undefined behavior issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted audio file.
local
low complexity
libaacplus-project CWE-20
7.8
2017-04-09 CVE-2017-7603 Integer Overflow or Wraparound vulnerability in Libaacplus Project Libaacplus 2.0.2
au_channel.h in HE-AAC+ Codec (aka libaacplus) 2.0.2 has a signed integer overflow, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted audio file.
local
low complexity
libaacplus-project CWE-190
7.8