6.8
CVSSv2

CVE-2018-13139

Published: 04/07/2018 Updated: 24/08/2020
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

A stack-based buffer overflow in psf_memset in common.c in libsndfile 1.0.28 allows remote malicious users to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted audio file. The vulnerability can be triggered by the executable sndfile-deinterleave.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

libsndfile project libsndfile 1.0.28

debian debian linux 8.0

Vendor Advisories

Debian Bug report logs - #914381 libsndfile: CVE-2018-19432 Package: src:libsndfile; Maintainer for src:libsndfile is Debian Multimedia Maintainers <debian-multimedia@listsdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Thu, 22 Nov 2018 20:21:02 UTC Severity: important Tags: fixed-upstream, ...
Several security issues were fixed in libsndfile ...
Synopsis Moderate: libsndfile security update Type/Severity Security Advisory: Moderate Topic An update for libsndfile is now available for Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Scoring System (CVSS) base sco ...
Synopsis Moderate: libsndfile security update Type/Severity Security Advisory: Moderate Topic An update for libsndfile is now available for Red Hat Enterprise Linux 8Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Scoring System (CVSS) base sco ...
A stack-based buffer overflow in psf_memset in commonc in libsndfile 1028 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted audio file The vulnerability can be triggered by the executable sndfile-deinterleave (CVE-2018-13139) ...
A stack-based buffer overflow in psf_memset in commonc in libsndfile 1028 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted audio file The vulnerability can be triggered by the executable sndfile-deinterleave ...
A stack-based buffer overflow in psf_memset in commonc in libsndfile 1028 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted audio file The vulnerability can be triggered by the executable sndfile-deinterleave ...