Related Vulnerabilities: CVE-2018-19661  

An issue was discovered in libsndfile 1.0.28. There is a buffer over-read in the function i2ulaw_array in ulaw.c that will lead to a denial of service.

Severity Medium

Remote No

Type Information disclosure

Description

An issue was discovered in libsndfile 1.0.28. There is a buffer over-read in the function i2ulaw_array in ulaw.c that will lead to a denial of service.

AVG-1550 lib32-libsndfile 1.0.28-3 1.0.31-1 Medium Testing FS#57434

AVG-1549 libsndfile 1.0.28-3 1.0.31-1 Medium Testing FS#57434

https://github.com/libsndfile/libsndfile/issues/429
https://github.com/libsndfile/libsndfile/pull/432
https://github.com/libsndfile/libsndfile/commit/8ddc442d539ca775d80cdbc7af17a718634a743f