PT-2026-2857 · Unknown+1 · Libsndfile+1

Published

2026-01-14

·

Updated

2026-03-15

·

CVE-2025-56226

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions Libsndfile versions prior to 1.2.2
Description Libsndfile contains a memory leak issue in the mpeg l3 encoder init() function located within the mpeg l3 encode.c file. This issue can lead to a gradual consumption of system memory over time.
Recommendations Update to a version of Libsndfile greater than 1.2.2.

Exploit

Fix

DoS

Memory Leak

Weakness Enumeration

Related Identifiers

AZL-74855
CVE-2025-56226
OESA-2026-1603
OESA-2026-1604
OESA-2026-1605
OESA-2026-1606
OPENSUSE-SU-2026:10061-1
OPENSUSE-SU-2026:20787-1
SUSE-SU-2026:21826-1

Affected Products

Libsndfile
Red Os