CVE-2022-33064: High severity Libsndfile Project Libsndfile vulnerability
An off-by-one error in function wavreadheader in src/wav.c in Libsndfile 1.1.0 results in a write out of bound which allows an attacker to execute arbitrary code Denial of Service or other unspecified impacts.
Other sources
An off-by-one error in function wavreadheader in src/wav.c in Libsndfile 1.1.0, results in a write out of bound, which allows an attacker to execute arbitrary code, Denial of Service or other unspecified impacts.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2022-33064?
CVE-2022-33064 is classified as a high severity vulnerability that can lead to arbitrary code execution.
How do I fix CVE-2022-33064?
To fix CVE-2022-33064, you should upgrade to a patched version of Libsndfile that addresses this vulnerability.
Which version of Libsndfile is affected by CVE-2022-33064?
CVE-2022-33064 affects Libsndfile version 1.1.0.
What type of vulnerability is CVE-2022-33064?
CVE-2022-33064 is an off-by-one error that results in a write out of bound.
What potential impacts does CVE-2022-33064 have?
The potential impacts of CVE-2022-33064 include arbitrary code execution and Denial of Service.