CVE-2018-13419: Medium severity libsndfile vulnerability
Published Jul 7, 2018
·Updated
DISPUTED An issue has been found in libsndfile 1.0.28. There is a memory leak in psfallocate in common.c, as demonstrated by sndfile-convert. NOTE: The maintainer and third parties were unable to reproduce and closed the issue.
Affected Software
1 affected component
Libsndfile Project Libsndfile=1.0.28
Event History
Jul 7, 2018
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Disputed
05:29 PM
Frequently Asked Questions
1
What is the severity of CVE-2018-13419?
The severity of CVE-2018-13419 is disputed, as the issue could not be reproduced by maintainers or third parties.
2
How does CVE-2018-13419 affect libsndfile 1.0.28?
CVE-2018-13419 affects libsndfile 1.0.28 by potentially causing a memory leak in the psf_allocate function.
3
Is there a fix for CVE-2018-13419?
As of now, there is no specific fix for CVE-2018-13419 due to the inability to reproduce the issue.
4
Which versions of libsndfile are affected by CVE-2018-13419?
CVE-2018-13419 specifically affects version 1.0.28 of libsndfile.
5
What is the nature of the issue described in CVE-2018-13419?
The nature of the issue in CVE-2018-13419 is a memory leak in the psf_allocate function, as demonstrated by the sndfile-convert tool.