Description
In autofile Audio File Library 0.3.6, there exists one memory leak vulnerability in printfileinfo, in printinfo.c, which allows an attacker to leak sensitive information via a crafted file. The printfileinfo function calls the copyrightstring function to get data, however, it dosn't use zero bytes to truncate the data.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3650-1 | audiofile security update |
Debian DLA |
DLA-4255-1 | audiofile security update |
Ubuntu USN |
USN-6558-1 | audiofile vulnerabilities |
References
History
Mon, 03 Nov 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Thu, 21 Aug 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Audiofile
Audiofile audiofile |
|
| CPEs | cpe:2.3:a:audiofile:audiofile:0.3.6:*:*:*:*:*:*:* | |
| Vendors & Products |
Audio File Library Project
Audio File Library Project audio File Library |
Audiofile
Audiofile audiofile |
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-11-03T19:26:53.732Z
Reserved: 2022-02-07T00:00:00.000Z
Link: CVE-2022-24599
No data.
Status : Modified
Published: 2022-02-24T15:15:29.633
Modified: 2025-11-03T20:15:53.070
Link: CVE-2022-24599
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
Ubuntu USN