Vulnerabilities > Symonics > Libmysofa > 1.0

DATE CVE VULNERABILITY TITLE RISK
2021-10-29 CVE-2021-3756 Out-of-bounds Write vulnerability in multiple products
libmysofa is vulnerable to Heap-based Buffer Overflow
network
low complexity
symonics fedoraproject CWE-787
critical
9.8
2021-02-08 CVE-2020-36152 Classic Buffer Overflow vulnerability in multiple products
Buffer overflow in readDataVar in hdf/dataobject.c in Symonics libmysofa 0.5 - 1.1 allows attackers to execute arbitrary code via a crafted SOFA.
network
low complexity
symonics fedoraproject CWE-120
8.8
2021-02-08 CVE-2020-36151 Out-of-bounds Write vulnerability in multiple products
Incorrect handling of input data in mysofa_resampler_reset_mem function in the libmysofa library 0.5 - 1.1 will lead to heap buffer overflow and overwriting large memory block.
network
low complexity
symonics fedoraproject CWE-787
6.5
2021-02-08 CVE-2020-36150 Out-of-bounds Read vulnerability in multiple products
Incorrect handling of input data in loudness function in the libmysofa library 0.5 - 1.1 will lead to heap buffer overflow and access to unallocated memory block.
network
low complexity
symonics fedoraproject CWE-125
6.5
2021-02-08 CVE-2020-36149 NULL Pointer Dereference vulnerability in multiple products
Incorrect handling of input data in changeAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault error in case of restrictive memory protection or near NULL pointer overwrite in case of no memory restrictions (e.g.
network
low complexity
symonics fedoraproject CWE-476
6.5
2021-02-08 CVE-2020-36148 NULL Pointer Dereference vulnerability in multiple products
Incorrect handling of input data in verifyAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault error in case of restrictive memory protection or near NULL pointer overwrite in case of no memory restrictions (e.g.
network
low complexity
symonics fedoraproject CWE-476
6.5