CVE-2014-3970
Published Jun 11, 2014
Last updated 8 years ago
Overview
- Description
- The pa_rtp_recv function in modules/rtp/rtp.c in the module-rtp-recv module in PulseAudio 5.0 and earlier allows remote attackers to cause a denial of service (assertion failure and abort) via an empty UDP packet.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 2.9
- Impact score
- 2.9
- Exploitability score
- 5.5
- Vector string
- AV:A/AC:M/Au:N/C:N/I:N/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-noinfo
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:pulseaudio:pulseaudio:1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6BFDEE3D-44CD-43E8-92C8-953EFDB22761" }, { "criteria": "cpe:2.3:a:pulseaudio:pulseaudio:1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F596B154-DABA-481F-9CB2-799D3AB142B0" }, { "criteria": "cpe:2.3:a:pulseaudio:pulseaudio:1.99.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "733CA32D-2662-4158-8458-B0D6C9DC14BD" }, { "criteria": "cpe:2.3:a:pulseaudio:pulseaudio:1.99.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EB11D799-A9C3-4F27-A58C-818A130D1DAE" }, { "criteria": "cpe:2.3:a:pulseaudio:pulseaudio:2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CA2B12D8-F21A-41F3-91E2-9AE271D2C692" }, { "criteria": "cpe:2.3:a:pulseaudio:pulseaudio:2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "836FD10A-2A09-458A-B904-DAB5D5D78D52" }, { "criteria": "cpe:2.3:a:pulseaudio:pulseaudio:3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D664D404-5476-46E7-8EC9-9F4BAD4AB38D" }, { "criteria": "cpe:2.3:a:pulseaudio:pulseaudio:4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7C45B6F5-CBFB-417C-8ADE-F9DA5D7F535E" }, { "criteria": "cpe:2.3:a:pulseaudio:pulseaudio:5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EB2BA4B8-5EF9-4DDB-B68F-A7941D001E13" } ], "operator": "OR" } ] } ]