FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

libsndfile_project -- Integer overflow in dataend calculation

Affected packages
libsndfile < 1.2.2_1

Details

VuXML ID 4ade0c4d-7e83-11ee-9a8c-00155d01f201
Discovery 2023-07-18
Entry 2023-11-08

cve@mitre.org reports:

Multiple signed integers overflow in function au_read_header in src/au.c and in functions mat4_open and mat4_read_header in src/mat4.c in Libsndfile, allows an attacker to cause Denial of Service or other unspecified impacts.

References

CVE Name CVE-2022-33065
URL https://nvd.nist.gov/vuln/detail/CVE-2022-33065