Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
libsndfile vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv3
CVE-2017-16942
In libsndfile 1.0.25 (fixed in 1.0.26), a divide-by-zero error exists in the function wav_w64_read_fmt_chunk() in wav_w64.c, which may lead to DoS when playing a crafted audio file.
Libsndfile Project Libsndfile 1.0.25
7.8
CVSSv3
CVE-2022-33064
An off-by-one error in function wav_read_header in src/wav.c in Libsndfile 1.1.0, results in a write out of bound, which allows an malicious user to execute arbitrary code, Denial of Service or other unspecified impacts.
Libsndfile Project Libsndfile 1.1.0
6.5
CVSSv3
CVE-2017-14634
In libsndfile 1.0.28, a divide-by-zero error exists in the function double64_init() in double64.c, which may lead to DoS when playing a crafted audio file.
Libsndfile Project Libsndfile 1.0.28
Debian Debian Linux 8.0
8.8
CVSSv3
CVE-2018-13139
A stack-based buffer overflow in psf_memset in common.c in libsndfile 1.0.28 allows remote malicious users to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted audio file. The vulnerability can be triggered by the executable snd...
Libsndfile Project Libsndfile 1.0.28
Debian Debian Linux 8.0
6.5
CVSSv3
CVE-2018-19432
An issue exists in libsndfile 1.0.28. There is a NULL pointer dereference in the function sf_write_int in sndfile.c, which will lead to a denial of service.
Libsndfile Project Libsndfile 1.0.28
Debian Debian Linux 8.0
9.8
CVSSv3
CVE-2017-12562
Heap-based Buffer Overflow in the psf_binheader_writef function in common.c in libsndfile up to and including 1.0.28 allows remote malicious users to cause a denial of service (application crash) or possibly have unspecified other impact.
Libsndfile Project Libsndfile 1.0.28
Debian Debian Linux 9.0
8.1
CVSSv3
CVE-2017-14246
An out of bounds read in the function d2ulaw_array() in ulaw.c of libsndfile 1.0.28 may lead to a remote DoS attack or information disclosure, related to mishandling of the NAN and INFINITY floating-point values.
Libsndfile Project Libsndfile 1.0.28
Debian Debian Linux 8.0
8.1
CVSSv3
CVE-2017-14245
An out of bounds read in the function d2alaw_array() in alaw.c of libsndfile 1.0.28 may lead to a remote DoS attack or information disclosure, related to mishandling of the NAN and INFINITY floating-point values.
Libsndfile Project Libsndfile 1.0.28
Debian Debian Linux 8.0
8.8
CVSSv3
CVE-2017-8361
The flac_buffer_copy function in flac.c in libsndfile 1.0.28 allows remote malicious users to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted audio file.
Libsndfile Project Libsndfile 1.0.28
Debian Debian Linux 8.0
6.5
CVSSv3
CVE-2017-8362
The flac_buffer_copy function in flac.c in libsndfile 1.0.28 allows remote malicious users to cause a denial of service (invalid read and application crash) via a crafted audio file.
Libsndfile Project Libsndfile 1.0.28
Debian Debian Linux 8.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
camera
bypass
CVE-2024-3592
CVE-2024-37383
CVE-2024-24919
CVE-2024-27822
CVE-2024-36788
CVE-2024-36789
man-in-the-middle
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
NEXT »