CVE-2017-8361: Buffer Overflow
Published Apr 30, 2017
·Updated
The flacbuffercopy function in flac.c in libsndfile 1.0.28 allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted audio file.
Affected Software
2 affected components
Libsndfile Project Libsndfile=1.0.28
Debian Debian Linux=8.0
Remediation
Event History
Apr 30, 2017
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-8361?
CVE-2017-8361 is classified as a denial of service vulnerability that can lead to buffer overflow and application crashes.
2
How do I fix CVE-2017-8361?
To fix CVE-2017-8361, you should upgrade to a newer version of libsndfile that has addressed the vulnerability.
3
Which software versions are affected by CVE-2017-8361?
CVE-2017-8361 affects libsndfile version 1.0.28 and Debian GNU/Linux 8.0.
4
What types of impacts can CVE-2017-8361 cause?
CVE-2017-8361 can cause application crash and potentially other unspecified impacts due to crafted audio files.
5
Is CVE-2017-8361 exploitable by remote attackers?
Yes, CVE-2017-8361 can be exploited by remote attackers through specially crafted audio files.