CVE-2018-19661: Medium severity Libsndfile Project Libsndfile vulnerability
Published Nov 29, 2018
·Updated
An issue was discovered in libsndfile 1.0.28. There is a buffer over-read in the function i2ulawarray in ulaw.c that will lead to a denial of service.
Affected Software
3 affected componentsFixes available
Libsndfile Project Libsndfile=1.0.28
Debian Debian Linux=8.0
debian/libsndfile
1.0.31-21.0.31-2+deb11u21.2.0-1+deb12u11.2.2-21.2.2-4
Remediation
Event History
Nov 29, 2018
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
Description
Jan 11, 2024
Data Sourced
via Launchpad·10:57 PM
Description
Feb 19, 2026
Data Sourced
via Ubuntu·08:57 PM
RemedyDescriptionSeverityAffected Software
Data Sourced
via Debian·08:58 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-19661?
CVE-2018-19661 has been classified with a severity rating that indicates it may lead to denial of service due to buffer over-read vulnerabilities.
2
How do I fix CVE-2018-19661?
To fix CVE-2018-19661, upgrade libsndfile to versions 1.0.31-2, 1.2.0-1, or 1.2.2-1 and 1.2.2-2.
3
Which versions of libsndfile are affected by CVE-2018-19661?
CVE-2018-19661 affects libsndfile version 1.0.28.
4
What type of vulnerability is CVE-2018-19661?
CVE-2018-19661 is classified as a buffer over-read vulnerability.
5
Can CVE-2018-19661 cause application crashes?
Yes, CVE-2018-19661 can cause application crashes due to denial of service resulting from the buffer over-read.