Description
A vulnerability was detected in jarikomppa soloud up to 20200207. This affects the function SoLoud::Wav::loadwav of the file src/audiosource/wav/soloud_wav.cpp of the component WAV File Parser. Performing a manipulation results in memory corruption. The attack must be initiated from a local position. The exploit is now public and may be used. The project was informed of the problem early through an issue report but has not responded yet.
Problem types
Product status
Timeline
| 2026-02-28: | Advisory disclosed |
| 2026-02-28: | VulDB entry created |
| 2026-02-28: | VulDB entry last update |
Credits
Oneafter (VulDB User)
References
vuldb.com/?id.348280 (VDB-348280 | jarikomppa soloud WAV File soloud_wav.cpp loadwav memory corruption)
vuldb.com/?ctiid.348280 (VDB-348280 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/?submit.761339 (Submit #761339 | jarikomppa soloud master-branch Memory Corruption)
github.com/jarikomppa/soloud/issues/401
github.com/oneafter/0209/blob/main/so2/repro
github.com/jarikomppa/soloud/