Ardour v5.12 contains a use-after-free vulnerability in the component ardour/libs/pbd/xml++.cc when using xmlFreeDoc and xmlXPathFreeContext.
References
Link | Resource |
---|---|
https://github.com/Ardour/ardour/commit/96daa4036a | Patch Third Party Advisory |
https://tracker.ardour.org/view.php?id=7926 | Vendor Advisory |
Configurations
Information
Published : 2021-10-08 13:15
Updated : 2021-10-15 09:17
NVD link : CVE-2020-22617
Mitre link : CVE-2020-22617
JSON object : View
CWE
CWE-416
Use After Free
Products Affected
ardour
- ardour