[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

252097

 
 

909

 
 

196747

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2021:2615-1 -- SLES libsndfile

ID: oval:org.secpod.oval:def:89045494Date: (C)2021-08-06   (M)2024-05-22
Class: PATCHFamily: unix




This update for libsndfile fixes the following issues: - CVE-2018-13139: Fixed a stack-based buffer overflow in psf_memset in common.c in libsndfile 1.0.28allows remote attackers to cause a denial of service or possibly have unspecified other impact. - CVE-2018-19432: Fixed a NULL pointer dereference in the function sf_write_int in sndfile.c, which will lead to a denial of service. - CVE-2021-3246: Fixed a heap buffer overflow vulnerability in msadpcm_decode_block. - CVE-2018-19758: Fixed a heap-based buffer over-read at wav.c in wav_write_header in libsndfile 1.0.28 that will cause a denial of service

Platform:
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP5
SUSE Linux Enterprise Server 12 SP4
Product:
libsndfile
Reference:
SUSE-SU-2021:2615-1
CVE-2018-13139
CVE-2018-19432
CVE-2018-19758
CVE-2021-3246
CVE    4
CVE-2021-3246
CVE-2018-19432
CVE-2018-19758
CVE-2018-13139
...

© SecPod Technologies