Improper input validation in aubio - CVE-2018-14522
Published: August 16, 2018 / Updated: August 20, 2018
aubio
Detailed vulnerability description
The vulnerability allows a remote attacker to cause DoS condition on the target system.
The vulnerability exists due to an error when processing malicious input. A remote attacker can trick the victim into processing specially crafted data, trigger SEGV signal can occur in aubio_pitch_set_unit in pitch/pitch.c, as demonstrated by aubionotes and cause the service to crash.