First published: Tue Dec 17 2024(Updated: )
libsndfile is a C library for reading and writing files containing sampled sound, such as AIFF, AU, or WAV. <br>Security Fix(es):<br><li> libsndfile: Segmentation fault error in ogg_vorbis.c:417 vorbis_analysis_wrote() (CVE-2024-50612)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/libsndfile | <1.0.31-8.el9_4.1 | 1.0.31-8.el9_4.1 |
redhat/libsndfile | <1.0.31-8.el9_4.1 | 1.0.31-8.el9_4.1 |
redhat/libsndfile-debuginfo | <1.0.31-8.el9_4.1 | 1.0.31-8.el9_4.1 |
redhat/libsndfile-debuginfo | <1.0.31-8.el9_4.1 | 1.0.31-8.el9_4.1 |
redhat/libsndfile-debugsource | <1.0.31-8.el9_4.1 | 1.0.31-8.el9_4.1 |
redhat/libsndfile-debugsource | <1.0.31-8.el9_4.1 | 1.0.31-8.el9_4.1 |
redhat/libsndfile-utils | <1.0.31-8.el9_4.1 | 1.0.31-8.el9_4.1 |
redhat/libsndfile-utils-debuginfo | <1.0.31-8.el9_4.1 | 1.0.31-8.el9_4.1 |
redhat/libsndfile-utils-debuginfo | <1.0.31-8.el9_4.1 | 1.0.31-8.el9_4.1 |
redhat/libsndfile-utils | <1.0.31-8.el9_4.1 | 1.0.31-8.el9_4.1 |
redhat/libsndfile | <1.0.31-8.el9_4.1 | 1.0.31-8.el9_4.1 |
redhat/libsndfile-debuginfo | <1.0.31-8.el9_4.1 | 1.0.31-8.el9_4.1 |
redhat/libsndfile-debugsource | <1.0.31-8.el9_4.1 | 1.0.31-8.el9_4.1 |
redhat/libsndfile-utils | <1.0.31-8.el9_4.1 | 1.0.31-8.el9_4.1 |
redhat/libsndfile-utils-debuginfo | <1.0.31-8.el9_4.1 | 1.0.31-8.el9_4.1 |
redhat/libsndfile | <1.0.31-8.el9_4.1.aa | 1.0.31-8.el9_4.1.aa |
redhat/libsndfile-debuginfo | <1.0.31-8.el9_4.1.aa | 1.0.31-8.el9_4.1.aa |
redhat/libsndfile-debugsource | <1.0.31-8.el9_4.1.aa | 1.0.31-8.el9_4.1.aa |
redhat/libsndfile-utils | <1.0.31-8.el9_4.1.aa | 1.0.31-8.el9_4.1.aa |
redhat/libsndfile-utils-debuginfo | <1.0.31-8.el9_4.1.aa | 1.0.31-8.el9_4.1.aa |
redhat/libsndfile-devel | <1.0.31-8.el9_4.1 | 1.0.31-8.el9_4.1 |
redhat/libsndfile-devel | <1.0.31-8.el9_4.1 | 1.0.31-8.el9_4.1 |
redhat/libsndfile-devel | <1.0.31-8.el9_4.1 | 1.0.31-8.el9_4.1 |
redhat/libsndfile-devel | <1.0.31-8.el9_4.1.aa | 1.0.31-8.el9_4.1.aa |
Red Hat Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions | ||
Red Hat Red Hat Enterprise Linux for Power, little endian - Extended Update Support | ||
Red Hat Red Hat CodeReady Linux Builder for x86_64 - Extended Update Support | ||
Red Hat Enterprise Linux for IBM z Systems | ||
Red Hat Red Hat Enterprise Linux for ARM 64 - 4 years of updates | ||
Red Hat Enterprise Linux for IBM z Systems | ||
Red Hat Enterprise Linux for SAP Solutions | ||
Red Hat Red Hat CodeReady Linux Builder for ARM 64 - Extended Update Support | ||
Red Hat Red Hat CodeReady Linux Builder for IBM z Systems - Extended Update Support | ||
Red Hat Enterprise Linux Server | ||
Red Hat Red Hat Enterprise Linux for x86_64 - Extended Update Support | ||
Red Hat Red Hat CodeReady Linux Builder for Power, little endian - Extended Update Support | ||
Red Hat Enterprise Linux for ARM64 EUS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2024:11172 is classified as moderate.
To fix RHSA-2024:11172, update the libsndfile package to version 1.0.31-8.el9_4.1 or later.
The CVE associated with RHSA-2024:11172 is CVE-2024-50612.
RHSA-2024:11172 affects multiple Red Hat Enterprise Linux products, including versions for Power, z Systems, and ARM architectures.
No specific workaround is recommended for RHSA-2024:11172; updating the affected package is the best course of action.