Wind River Support Network

HomeDefectsLIN10-2012
Fixed

LIN10-2012 : Security Advisory - libsndfile - CVE-2017-14246

Created: Sep 25, 2017    Updated: Sep 13, 2022
Resolved Date: Sep 3, 2018
Found In Version: 10.17.41.1
Fix Version: 10.17.41.11
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Userspace

Description

An out of bounds read in the function d2ulaw_array() in ulaw.c of libsndfile 1.0.28 may lead to a remote DoS attack or information disclosure, related to mishandling of the NAN and INFINITY floating-point values.

https://nvd.nist.gov/vuln/detail/CVE-2017-14246

Other Downloads


CVEs


Live chat
Online