Libsndfile · Libsndfile · CVE-2017-12562
**Name of the Vulnerable Software and Affected Versions**
libsndfile versions 1.0.28 and earlier
**Description**
The issue is related to a Heap-based Buffer Overflow in the `psf binheader writef` function in `common.c` in libsndfile. This allows remote attackers to cause a denial of service, such as an application crash, or possibly have other unspecified impacts, including potential violations of data confidentiality, integrity, and availability.
**Recommendations**
For libsndfile versions 1.0.28 and earlier, update to a version later than 1.0.28 to resolve the issue. As a temporary workaround, consider restricting access to the `psf binheader writef` function in `common.c` until a patch is available.