Описание
An issue has been found in libsndfile 1.0.28. There is a memory leak in psf_allocate in common.c, as demonstrated by sndfile-convert. NOTE: The maintainer and third parties were unable to reproduce and closed the issue
A flaw was found in libsndfile. A remote attacker could exploit a memory leak vulnerability in the psf_allocate() function within common.c. By processing a specially crafted file, an attacker could cause the application to consume excessive memory, leading to a Denial of Service (DoS) condition.
Отчет
This is a moderate vulnerabilty where a memory leak flaw in libsndfile could lead to a denial of service if an application processes a specially crafted file. Red Hat Enterprise Linux 6, 7, and 8 are not affected by this vulnerability. Red Hat Enterprise Linux 9 was affected but has since been resolved.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 6 | libsndfile | Not affected | ||
| Red Hat Enterprise Linux 7 | libsndfile | Not affected | ||
| Red Hat Enterprise Linux 8 | libsndfile | Not affected | ||
| Red Hat Enterprise Linux 9 | libsndfile | Affected |
Показывать по
Дополнительная информация
Статус:
6.5 Medium
CVSS3
Связанные уязвимости
An issue has been found in libsndfile 1.0.28. There is a memory leak in psf_allocate in common.c, as demonstrated by sndfile-convert. NOTE: The maintainer and third parties were unable to reproduce and closed the issue
An issue has been found in libsndfile 1.0.28. There is a memory leak in psf_allocate in common.c, as demonstrated by sndfile-convert. NOTE: The maintainer and third parties were unable to reproduce and closed the issue
An issue has been found in libsndfile 1.0.28. There is a memory leak i ...
** DISPUTED ** An issue has been found in libsndfile 1.0.28. There is a memory leak in psf_allocate in common.c, as demonstrated by sndfile-convert. NOTE: The maintainer and third parties were unable to reproduce and closed the issue.
6.5 Medium
CVSS3