HomeDefectsLIN1025-10320
Fixed

LIN1025-10320 : Security Advisory - libsndfile1 - CVE-2021-4156

Created: Apr 23, 2026    Updated: May 31, 2026
Resolved Date: May 31, 2026
Found In Version: 10.25.33.9
Fix Version: 10.25.33.10
Severity: Standard
Applicable for: Wind River Linux LTS 25
Component/s: Userspace

Description

An out-of-bounds read flaw was found in libsndfile's FLAC codec functionality. An attacker who is able to submit a specially crafted file (via tricking a user to open or otherwise) to an application linked with libsndfile and using the FLAC codec, could trigger an out-of-bounds read that would most likely cause a crash but could potentially leak memory information that could be used in further exploitation of other flaws.

https://nvd.nist.gov/vuln/detail/CVE-2021-4156

CVEs