An off-by-one error in function wav_read_header in src...
High severity
Unreviewed
Published
Jul 18, 2023
to the GitHub Advisory Database
•
Updated Apr 4, 2024
Description
Published by the National Vulnerability Database
Jul 18, 2023
Published to the GitHub Advisory Database
Jul 18, 2023
Last updated
Apr 4, 2024
An off-by-one error in function wav_read_header in src/wav.c in Libsndfile 1.1.0, results in a write out of bound, which allows an attacker to execute arbitrary code, Denial of Service or other unspecified impacts.
References