PT-2022-2211 · Unknown · Libsndfile

Published

2022-03-28

·

Updated

2022-03-28

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions libsndfile (affected versions not specified)
Description The issue is related to the nms adpcm update() function in the libsndfile library, which is used for reading and writing audio files. It is associated with an integer overflow. Exploitation of this issue could allow a remote attacker to execute arbitrary code on the target system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Integer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2022-02293

Affected Products

Libsndfile