CVE-2017-7741

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
12/04/2017
Last modified:
11/07/2017

Description

In libsndfile before 1.0.28, an error in the "flac_buffer_copy()" function (flac.c) can be exploited to cause a segmentation violation (with write memory access) via a specially crafted FLAC file during a resample attempt, a similar issue to CVE-2017-7585.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:libsndfile_project:libsndfile:*:*:*:*:*:*:*:* 1.0.27 (including)