First published: Thu Sep 21 2017(Updated: )
An out of bounds read in the function d2alaw_array() in alaw.c of libsndfile 1.0.28 may lead to a remote DoS attack or information disclosure, related to mishandling of the NAN and INFINITY floating-point values.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/libsndfile | 1.0.31-2 1.2.0-1 1.2.2-1 1.2.2-2 | |
Mega-nerd Libsndfile | =1.0.28 | |
Debian | =8.0 | |
libsndfile | =1.0.28 | |
Debian Debian Linux | =8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.