VYPR

rpm package

suse/libsndfile&distro=SUSE Linux Enterprise Server 15 SP2-LTSS

pkg:rpm/suse/libsndfile&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP2-LTSS

Vulnerabilities (2)

  • CVE-2022-33065Jul 18, 2023
    affected < 1.0.28-150000.5.20.1fixed 1.0.28-150000.5.20.1

    Multiple signed integers overflow in function au_read_header in src/au.c and in functions mat4_open and mat4_read_header in src/mat4.c in Libsndfile, allows an attacker to cause Denial of Service or other unspecified impacts.

  • CVE-2021-4156Mar 23, 2022
    affected < 1.0.28-5.15.1fixed 1.0.28-5.15.1

    An out-of-bounds read flaw was found in libsndfile's FLAC codec functionality. An attacker who is able to submit a specially crafted file (via tricking a user to open or otherwise) to an application linked with libsndfile and using the FLAC codec, could trigger an out-of-bounds r