CVE-2007-4974Improper Restriction of Operations within the Bounds of a Memory Buffer in Libsndfile

Severity
7.5HIGHNVD
EPSS
6.8%
top 8.65%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 19
Latest updateMay 1

Description

Heap-based buffer overflow in the flac_buffer_copy function in libsndfile 1.0.17 and earlier might allow remote attackers to execute arbitrary code via a FLAC file with crafted PCM data containing a block with a size that exceeds the previous block size.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages5 packages

debiandebian/libsndfile< ardour 1:2.1-1.1 (bookworm)
Debianlibsndfile_project/libsndfile< 1.0.17-4+3
NVDmega-nerd/libsndfile1.0.17+11
debiandebian/ardour< ardour 1:2.1-1.1 (bookworm)
Debianardour/ardour< 1:2.1-1.1+3

🔴Vulnerability Details

2
GHSA
GHSA-h6f6-m3cj-r7wc: Heap-based buffer overflow in the flac_buffer_copy function in libsndfile 12022-05-01
OSV
CVE-2007-4974: Heap-based buffer overflow in the flac_buffer_copy function in libsndfile 12007-09-19

📋Vendor Advisories

3
Ubuntu
libsndfile vulnerability2007-10-04
Red Hat
Heap overflow in libsndfile triggerable by seeks2007-09-16
Debian
CVE-2007-4974: ardour - Heap-based buffer overflow in the flac_buffer_copy function in libsndfile 1.0.17...2007

💬Community

2
Bugzilla
CVE-2007-4974 Heap overflow in libsndfile triggerable by seeks2008-01-28
Bugzilla
CVE-2007-4974 Heap overflow in libsndfile triggerable by seeks2007-09-19