Hello over here!
For some time now, this file has been giving the system problems and is suddenly aborted, the problems occur when playing an audio file and the sound is choppy until it becomes hoarse and unreadable.
#
Navigating through that link, here are some lines of words from what they mention in that link:
https://vuxml.FreeBSD.org/freebsd/30704aba-1da4-11e8-b6aa-4ccc6adda413.ht
For some time now, this file has been giving the system problems and is suddenly aborted, the problems occur when playing an audio file and the sound is choppy until it becomes hoarse and unreadable.
#
pkg audit -F
Code:
vulnxml file up-to-date
libsndfile-1.0.28_1 is vulnerable:
libsndfile -- out-of-bounds reads
CVE: CVE-2017-17457
CVE: CVE-2017-17456
CVE: CVE-2017-14246
CVE: CVE-2017-14245
WWW: https://vuxml.FreeBSD.org/freebsd/30704aba-1da4-11e8-b6aa-4ccc6adda413.html
sqlite3-3.22.0 is vulnerable:
SQLite -- Corrupt DB can cause a NULL pointer dereference
CVE: CVE-2018-8740
WWW: https://vuxml.FreeBSD.org/freebsd/6d52bda1-2e54-11e8-a68f-485b3931c969.html
firefox-59.0.1,1 is vulnerable:
mozilla -- use-after-free in compositor
CVE: CVE-2018-5148
WWW: https://vuxml.FreeBSD.org/freebsd/23f59689-0152-42d3-9ade-1658d6380567.html
thunderbird-52.6.0_2 is vulnerable:
mozilla -- use-after-free in compositor
CVE: CVE-2018-5148
WWW: https://vuxml.FreeBSD.org/freebsd/23f59689-0152-42d3-9ade-1658d6380567.html
thunderbird-52.6.0_2 is vulnerable:
mozilla -- multiple vulnerabilities
CVE: CVE-2018-5147
CVE: CVE-2018-5146
WWW: https://vuxml.FreeBSD.org/freebsd/7943794f-707f-4e31-9fea-3bbf1ddcedc1.html
thunderbird-52.6.0_2 is vulnerable:
mozilla -- multiple vulnerabilities
CVE: CVE-2018-5143
CVE: CVE-2018-5142
CVE: CVE-2018-5141
CVE: CVE-2018-5140
CVE: CVE-2018-5138
CVE: CVE-2018-5137
CVE: CVE-2018-5136
CVE: CVE-2018-5135
CVE: CVE-2018-5134
CVE: CVE-2018-5133
CVE: CVE-2018-5132
CVE: CVE-2018-5131
CVE: CVE-2018-5130
CVE: CVE-2018-5129
CVE: CVE-2018-5128
CVE: CVE-2018-5127
CVE: CVE-2018-5126
CVE: CVE-2018-5125
WWW: https://vuxml.FreeBSD.org/freebsd/c71cdc95-3c18-45b7-866a-af28b59aabb5.html
4 problem(s) in the installed packages found.
#
Code:
CVE-2017-14245 (Medium): An out of bounds read in the function d2alaw_array() in alaw.c of libsndfile 1.0.28 may lead to a remote DoS attack or information disclosure, related to mishandling of the NAN and INFINITY floating-point values.
CVE-2017-14246 (Medium): An out of bounds read in the function d2ulaw_array() in ulaw.c of libsndfile 1.0.28 may lead to a remote DoS attack or information disclosure, related to mishandling of the NAN and INFINITY floating-point values.
https://vuxml.FreeBSD.org/freebsd/30704aba-1da4-11e8-b6aa-4ccc6adda413.ht