Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Manxor

#26301de 53,633
9.8CVSS total
Vulnerabilidades · 1
PT-2017-3257
9.8
2017-06-14
Libsndfile · Libsndfile · CVE-2017-12562
**Name of the Vulnerable Software and Affected Versions** libsndfile versions 1.0.28 and earlier **Description** The issue is related to a Heap-based Buffer Overflow in the `psf binheader writef` function in `common.c` in libsndfile. This allows remote attackers to cause a denial of service, such as an application crash, or possibly have other unspecified impacts, including potential violations of data confidentiality, integrity, and availability. **Recommendations** For libsndfile versions 1.0.28 and earlier, update to a version later than 1.0.28 to resolve the issue. As a temporary workaround, consider restricting access to the `psf binheader writef` function in `common.c` until a patch is available.