Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:25278
HistoryMay 10, 2020 - 11:23 p.m.

Arbitrary Code Execution

2020-05-1023:23:47
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

0.005 Low

EPSS

Percentile

77.5%

libsndfile is vulnerable to arbitrary code execution. The vulnerability exists as a heap-based Buffer Overflow in the psf_binheader_writef function in common.c in libsndfile through 1.0.28 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.