Description
In libsndfile version 1.0.28, an error in the "aiff_read_chanmap()" function (aiff.c) can be exploited to cause an out-of-bounds read memory access via a specially crafted AIFF file.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-985-1 | libsndfile security update |
Debian DLA |
DLA-2418-1 | libsndfile security update |
EUVD |
EUVD-2017-15946 | In libsndfile version 1.0.28, an error in the "aiff_read_chanmap()" function (aiff.c) can be exploited to cause an out-of-bounds read memory access via a specially crafted AIFF file. |
Ubuntu USN |
USN-4013-1 | libsndfile vulnerabilities |
Ubuntu USN |
USN-4704-1 | libsndfile vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: flexera
Published:
Updated: 2024-08-05T15:41:17.695Z
Reserved: 2017-03-14T00:00:00.000Z
Link: CVE-2017-6892
No data.
Status : Modified
Published: 2017-06-12T16:29:00.187
Modified: 2026-05-13T00:24:29.033
Link: CVE-2017-6892
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Ubuntu USN