Known Vulnerabilities for products from Pulseaudio

Listed below are 6 of the newest known vulnerabilities associated with the vendor "Pulseaudio".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2020-11931 An Ubuntu-specific modification to Pulseaudio to provide security mediation for Snap-packaged applications was found to have ... 3.3 - LOW 2020-05-15 2020-05-19
CVE-2014-3970 The pa_rtp_recv function in modules/rtp/rtp.c in the module-rtp-recv module in PulseAudio 5.0 and earlier allows remote attac... 2.9 - LOW 2014-06-11 2017-01-07
CVE-2009-1894 Race condition in PulseAudio 0.9.9, 0.9.10, and 0.9.14 allows local users to gain privileges via vectors involving creation o... 7.2 - HIGH 2009-07-17 2023-02-13
CVE-2009-1299 The pa_make_secure_dir function in core-util.c in PulseAudio 0.9.10 and 0.9.19 allows local users to change the ownership and... 6.9 - MEDIUM 2010-03-18 2023-11-07
CVE-2008-0008 The pa_drop_root function in PulseAudio 0.9.8, and a certain 0.9.9 build, does not check return values from (1) setresuid, (2... 7.2 - HIGH 2008-01-29 2024-01-09
CVE-2007-1804 PulseAudio 0.9.5 allows remote attackers to cause a denial of service (daemon crash) via (1) a PA_PSTREAM_DESCRIPTOR_LENGTH v... 7.8 - HIGH 2007-04-02 2017-07-29

Known software with vulnerabilities from Pulseaudio

Type Vendor Product Version
ApplicationPulseaudioPulseaudio0.9.23