cbcvebase.

Debian Libsndfile vulnerabilities

34 known vulnerabilities affecting debian/libsndfile.

Total CVEs
34
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH5MEDIUM17LOW10

Vulnerabilities

Page 1 of 2
CVE-2015-7805P3CRITICALCVSS 9.3PoCfixed in libsndfile 1.0.25-10 (bookworm)2015
CVE-2015-7805 [CRITICAL] CVE-2015-7805: libsndfile - Heap-based buffer overflow in libsndfile 1.0.25 allows remote attackers to have ... Heap-based buffer overflow in libsndfile 1.0.25 allows remote attackers to have unspecified impact via the headindex value in the header in an AIFF file. Scope: local bookworm: resolved (fixed in 1.0.25-10) bullseye: resolved (fixed in 1.0.25-10) forky: resolved (fixed in 1.0.25-10) sid: resolved (fixed in 1.0.25-10) trixie: resolved (fixed in 1.0.25-10)
debian
CVE-2021-3246P3HIGHCVSS 8.8fixed in libsndfile 1.0.31-2 (bookworm)2021
CVE-2021-3246 [HIGH] CVE-2021-3246: libsndfile - A heap buffer overflow vulnerability in msadpcm_decode_block of libsndfile 1.0.3... A heap buffer overflow vulnerability in msadpcm_decode_block of libsndfile 1.0.30 allows attackers to execute arbitrary code via a crafted WAV file. Scope: local bookworm: resolved (fixed in 1.0.31-2) bullseye: resolved (fixed in 1.0.31-2) forky: resolved (fixed in 1.0.31-2) sid: resolved (fixed in 1.0.31-2) trixie: resolved (fixed in 1.0.31-2)
debian
CVE-2017-12562P3CRITICALCVSS 9.8fixed in libsndfile 1.0.28-3 (bookworm)2017
CVE-2017-12562 [CRITICAL] CVE-2017-12562: libsndfile - Heap-based Buffer Overflow in the psf_binheader_writef function in common.c in l... Heap-based Buffer Overflow in the psf_binheader_writef function in common.c in libsndfile through 1.0.28 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact. Scope: local bookworm: resolved (fixed in 1.0.28-3) bullseye: resolved (fixed in 1.0.28-3) forky: resolved (fixed in 1.0.28-3) sid: resolved
debian
CVE-2009-1788P3LOWCVSS 9.3fixed in libsndfile 1.0.20-1 (bookworm)2009
CVE-2009-1788 [CRITICAL] CVE-2009-1788: libsndfile - Heap-based buffer overflow in voc_read_header in libsndfile 1.0.15 through 1.0.1... Heap-based buffer overflow in voc_read_header in libsndfile 1.0.15 through 1.0.19, as used in Winamp 5.552 and possibly other media programs, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a VOC file with an invalid header value. Scope: local bookworm: resolved (fixed in 1.0.20-1) bullseye: resol
debian
CVE-2009-0186P3MEDIUMCVSS 9.3fixed in libsndfile 1.0.19-1 (bookworm)2009
CVE-2009-0186 [CRITICAL] CVE-2009-0186: libsndfile - Integer overflow in libsndfile 1.0.18, as used in Winamp and other products, all... Integer overflow in libsndfile 1.0.18, as used in Winamp and other products, allows context-dependent attackers to execute arbitrary code via crafted description chunks in a CAF audio file, leading to a heap-based buffer overflow. Scope: local bookworm: resolved (fixed in 1.0.19-1) bullseye: resolved (fixed in 1.0.19-1) forky: resolved (fixed in 1.0.19-1) sid:
debian
CVE-2017-8361P3HIGHCVSS 8.8fixed in libsndfile 1.0.27-3 (bookworm)2017
CVE-2017-8361 [HIGH] CVE-2017-8361: libsndfile - The flac_buffer_copy function in flac.c in libsndfile 1.0.28 allows remote attac... The flac_buffer_copy function in flac.c in libsndfile 1.0.28 allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted audio file. Scope: local bookworm: resolved (fixed in 1.0.27-3) bullseye: resolved (fixed in 1.0.27-3) forky: resolved (fixed in 1.0.27-3) sid: resolved (fix
debian
CVE-2018-13139P3LOWCVSS 8.8fixed in libsndfile 1.0.28-5 (bookworm)2018
CVE-2018-13139 [HIGH] CVE-2018-13139: libsndfile - A stack-based buffer overflow in psf_memset in common.c in libsndfile 1.0.28 all... A stack-based buffer overflow in psf_memset in common.c in libsndfile 1.0.28 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted audio file. The vulnerability can be triggered by the executable sndfile-deinterleave. Scope: local bookworm: resolved (fixed in 1.0.28-5) bullseye: resolved (
debian
CVE-2017-6892P3HIGHCVSS 8.8fixed in libsndfile 1.0.28-1 (bookworm)2017
CVE-2017-6892 [HIGH] CVE-2017-6892: libsndfile - In libsndfile version 1.0.28, an error in the "aiff_read_chanmap()" function (ai... In libsndfile version 1.0.28, an error in the "aiff_read_chanmap()" function (aiff.c) can be exploited to cause an out-of-bounds read memory access via a specially crafted AIFF file. Scope: local bookworm: resolved (fixed in 1.0.28-1) bullseye: resolved (fixed in 1.0.28-1) forky: resolved (fixed in 1.0.28-1) sid: resolved (fixed in 1.0.28-1) trixie: resolved (fixed
debian
CVE-2009-1791P3LOWCVSS 9.3fixed in libsndfile 1.0.20-1 (bookworm)2009
CVE-2009-1791 [CRITICAL] CVE-2009-1791: libsndfile - Heap-based buffer overflow in aiff_read_header in libsndfile 1.0.15 through 1.0.... Heap-based buffer overflow in aiff_read_header in libsndfile 1.0.15 through 1.0.19, as used in Winamp 5.552 and possibly other media programs, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via an AIFF file with an invalid header value. Scope: local bookworm: resolved (fixed in 1.0.20-1) bullseye: re
debian
CVE-2007-4974P3MEDIUMCVSS 7.5fixed in ardour 1:2.1-1.1 (bookworm)2007
CVE-2007-4974 [HIGH] CVE-2007-4974: ardour - Heap-based buffer overflow in the flac_buffer_copy function in libsndfile 1.0.17... Heap-based buffer overflow in the flac_buffer_copy function in libsndfile 1.0.17 and earlier might allow remote attackers to execute arbitrary code via a FLAC file with crafted PCM data containing a block with a size that exceeds the previous block size. Scope: local bookworm: resolved (fixed in 1:2.1-1.1) bullseye: resolved (fixed in 1:2.1-1.1) forky: resolved (fixed
debian
CVE-2017-14246P3LOWCVSS 8.1fixed in libsndfile 1.0.28-5 (bookworm)2017
CVE-2017-14246 [HIGH] CVE-2017-14246: libsndfile - An out of bounds read in the function d2ulaw_array() in ulaw.c of libsndfile 1.0... An out of bounds read in the function d2ulaw_array() in ulaw.c of libsndfile 1.0.28 may lead to a remote DoS attack or information disclosure, related to mishandling of the NAN and INFINITY floating-point values. Scope: local bookworm: resolved (fixed in 1.0.28-5) bullseye: resolved (fixed in 1.0.28-5) forky: resolved (fixed in 1.0.28-5) sid: resolved (fixed in 1
debian
CVE-2017-14245P3LOWCVSS 8.1fixed in libsndfile 1.0.28-5 (bookworm)2017
CVE-2017-14245 [HIGH] CVE-2017-14245: libsndfile - An out of bounds read in the function d2alaw_array() in alaw.c of libsndfile 1.0... An out of bounds read in the function d2alaw_array() in alaw.c of libsndfile 1.0.28 may lead to a remote DoS attack or information disclosure, related to mishandling of the NAN and INFINITY floating-point values. Scope: local bookworm: resolved (fixed in 1.0.28-5) bullseye: resolved (fixed in 1.0.28-5) forky: resolved (fixed in 1.0.28-5) sid: resolved (fixed in 1
debian
CVE-2011-2696P3MEDIUMCVSS 6.8fixed in libsndfile 1.0.25-1 (bookworm)2011
CVE-2011-2696 [MEDIUM] CVE-2011-2696: libsndfile - Integer overflow in libsndfile before 1.0.25 allows remote attackers to cause a ... Integer overflow in libsndfile before 1.0.25 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PARIS Audio Format (PAF) file that triggers a heap-based buffer overflow. Scope: local bookworm: resolved (fixed in 1.0.25-1) bullseye: resolved (fixed in 1.0.25-1) forky: resolved (fixed in 1.0.25-
debian
CVE-2021-4156P3HIGHCVSS 7.1fixed in libsndfile 1.1.0-1 (bookworm)2021
CVE-2021-4156 [HIGH] CVE-2021-4156: libsndfile - An out-of-bounds read flaw was found in libsndfile's FLAC codec functionality. A... An out-of-bounds read flaw was found in libsndfile's FLAC codec functionality. An attacker who is able to submit a specially crafted file (via tricking a user to open or otherwise) to an application linked with libsndfile and using the FLAC codec, could trigger an out-of-bounds read that would most likely cause a crash but could potentially leak memory information
debian
CVE-2018-19662P4LOWCVSS 8.1fixed in libsndfile 1.0.28-5 (bookworm)2018
CVE-2018-19662 [HIGH] CVE-2018-19662: libsndfile - An issue was discovered in libsndfile 1.0.28. There is a buffer over-read in the... An issue was discovered in libsndfile 1.0.28. There is a buffer over-read in the function i2alaw_array in alaw.c that will lead to a denial of service. Scope: local bookworm: resolved (fixed in 1.0.28-5) bullseye: resolved (fixed in 1.0.28-5) forky: resolved (fixed in 1.0.28-5) sid: resolved (fixed in 1.0.28-5) trixie: resolved (fixed in 1.0.28-5)
debian
CVE-2022-33065P4HIGHCVSS 7.8fixed in libsndfile 1.2.0-1+deb12u1 (bookworm)2022
CVE-2022-33065 [HIGH] CVE-2022-33065: libsndfile - Multiple signed integers overflow in function au_read_header in src/au.c and in ... Multiple signed integers overflow in function au_read_header in src/au.c and in functions mat4_open and mat4_read_header in src/mat4.c in Libsndfile, allows an attacker to cause Denial of Service or other unspecified impacts. Scope: local bookworm: resolved (fixed in 1.2.0-1+deb12u1) bullseye: resolved (fixed in 1.0.31-2+deb11u1) forky: resolved (fixed in 1.2.2-2
debian
CVE-2017-8363P4MEDIUMCVSS 6.5fixed in libsndfile 1.0.27-3 (bookworm)2017
CVE-2017-8363 [MEDIUM] CVE-2017-8363: libsndfile - The flac_buffer_copy function in flac.c in libsndfile 1.0.28 allows remote attac... The flac_buffer_copy function in flac.c in libsndfile 1.0.28 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted audio file. Scope: local bookworm: resolved (fixed in 1.0.27-3) bullseye: resolved (fixed in 1.0.27-3) forky: resolved (fixed in 1.0.27-3) sid: resolved (fixed in 1.0.27-3) trixie: reso
debian
CVE-2018-19432P4LOWCVSS 6.5fixed in libsndfile 1.0.28-5 (bookworm)2018
CVE-2018-19432 [MEDIUM] CVE-2018-19432: libsndfile - An issue was discovered in libsndfile 1.0.28. There is a NULL pointer dereferenc... An issue was discovered in libsndfile 1.0.28. There is a NULL pointer dereference in the function sf_write_int in sndfile.c, which will lead to a denial of service. Scope: local bookworm: resolved (fixed in 1.0.28-5) bullseye: resolved (fixed in 1.0.28-5) forky: resolved (fixed in 1.0.28-5) sid: resolved (fixed in 1.0.28-5) trixie: resolved (fixed in 1.0.28-5)
debian
CVE-2017-14634P4MEDIUMCVSS 6.5fixed in libsndfile 1.0.28-5 (bookworm)2017
CVE-2017-14634 [MEDIUM] CVE-2017-14634: libsndfile - In libsndfile 1.0.28, a divide-by-zero error exists in the function double64_ini... In libsndfile 1.0.28, a divide-by-zero error exists in the function double64_init() in double64.c, which may lead to DoS when playing a crafted audio file. Scope: local bookworm: resolved (fixed in 1.0.28-5) bullseye: resolved (fixed in 1.0.28-5) forky: resolved (fixed in 1.0.28-5) sid: resolved (fixed in 1.0.28-5) trixie: resolved (fixed in 1.0.28-5)
debian
CVE-2018-19758P4MEDIUMCVSS 6.5fixed in libsndfile 1.0.28-5 (bookworm)2018
CVE-2018-19758 [MEDIUM] CVE-2018-19758: libsndfile - There is a heap-based buffer over-read at wav.c in wav_write_header in libsndfil... There is a heap-based buffer over-read at wav.c in wav_write_header in libsndfile 1.0.28 that will cause a denial of service. Scope: local bookworm: resolved (fixed in 1.0.28-5) bullseye: resolved (fixed in 1.0.28-5) forky: resolved (fixed in 1.0.28-5) sid: resolved (fixed in 1.0.28-5) trixie: resolved (fixed in 1.0.28-5)
debian
Debian Libsndfile vulnerabilities | cvebase