High severity8.1NVD Advisory· Published Sep 21, 2017· Updated May 13, 2026
CVE-2017-14245
CVE-2017-14245
Description
An out of bounds read in the function d2alaw_array() in alaw.c of libsndfile 1.0.28 may lead to a remote DoS attack or information disclosure, related to mishandling of the NAN and INFINITY floating-point values.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- github.com/erikd/libsndfile/issues/317nvdIssue TrackingThird Party Advisory
- lists.debian.org/debian-lts-announce/2018/12/msg00016.htmlnvdMailing ListThird Party Advisory
- lists.debian.org/debian-lts-announce/2020/10/msg00030.htmlnvd
- security.gentoo.org/glsa/202007-65nvd
- usn.ubuntu.com/4013-1/nvd
News mentions
0No linked articles in our index yet.