Related Vulnerabilities: CVE-2017-6892  

In libsndfile version 1.0.28, an error in the "aiff_read_chanmap()" function (aiff.c) can be exploited to cause an out-of-bounds read memory access via a specially crafted AIFF file.

Severity Medium

Remote No

Type Information disclosure

Description

In libsndfile version 1.0.28, an error in the "aiff_read_chanmap()" function (aiff.c) can be exploited to cause an out-of-bounds read memory access via a specially crafted AIFF file.

AVG-1550 lib32-libsndfile 1.0.28-3 1.0.31-1 Medium Testing FS#57434

AVG-1549 libsndfile 1.0.28-3 1.0.31-1 Medium Testing FS#57434

https://github.com/libsndfile/libsndfile/commit/f833c53cb596e9e1792949f762e0b33661822748