CVE-2018-18193 (NVD)

2018-10-09

An issue was discovered in libgig 4.1.0. There is operator new[] failure (due to a big pWavePoolTable heap request) in DLS::File::File in DLS.cpp.

Products Libgig
Type Improper Restriction of Operations within the Bounds of a Memory Buffer (CWE-119)
First patch - None (likely due to unavailable code)
Links https://github.com/TeamSeri0us/pocs/blob/master/libgig/README-1008.md