There is a heap-based buffer over-read at wav.c in wav_write_header in libsndfile 1.0.28 that will cause a denial of service.
                
            References
                    | Link | Resource | 
|---|---|
| https://bugzilla.redhat.com/show_bug.cgi?id=1643812 | Exploit Issue Tracking Third Party Advisory | 
| https://lists.debian.org/debian-lts-announce/2019/01/msg00008.html | Mailing List Third Party Advisory | 
| https://lists.debian.org/debian-lts-announce/2020/10/msg00030.html | |
| https://usn.ubuntu.com/4013-1/ | 
Configurations
                    History
                    No history.
Information
                Published : 2018-11-30 03:29
Updated : 2020-10-29 19:15
NVD link : CVE-2018-19758
Mitre link : CVE-2018-19758
CVE.ORG link : CVE-2018-19758
JSON object : View
Products Affected
                debian
- debian_linux
 
libsndfile_project
- libsndfile
 
CWE
                
                    
                        
                        CWE-125
                        
            Out-of-bounds Read
