First published: Mon Jun 12 2017(Updated: )
In libsndfile version 1.0.28, an error in the "aiff_read_chanmap()" function (aiff.c) can be exploited to cause an out-of-bounds read memory access via a specially crafted AIFF file.
Credit: PSIRT-CNA@flexerasoftware.com PSIRT-CNA@flexerasoftware.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/libsndfile | 1.0.31-2 1.2.0-1 1.2.2-1 1.2.2-2 | |
Mega-nerd Libsndfile | =1.0.28 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.