Simple Lossless Audio Project maintains a narrowly scoped audio codec and encoding tool, with observed vulnerability exposure centered on the core Simple Lossless Audio product. The durable signal reflects memory-safety concerns inherent to audio parsing and codec implementation, specifically out-of-bounds write conditions; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Simple Lossless Audio Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-11626HIGH SELA (aka SimplE Lossless Audio) v0.1.2-alpha has a stack-based buffer overflow in the core/apev2.c init_apev2_keys function. | May 31, 2018 | 7.5 | 23 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Simple Lossless Audio Project.
Media articles that mention a CVE ID that affects a product developed by Simple Lossless Audio Project — matched by CVE ID, not by vendor name.