Wind River Support Network

HomeDefectsLIN6-13774
Fixed

LIN6-13774 : Security Advisory - libsndfile - CVE-2017-14245

Created: Sep 26, 2017    Updated: Dec 16, 2018
Resolved Date: Nov 18, 2018
Found In Version: 6.0.0.34
Fix Version: 6.0.0.38
Severity: Standard
Applicable for: Wind River Linux 6
Component/s: Userspace

Description

An out of bounds read in the function d2alaw_array() in alaw.c of libsndfile 1.0.28 may lead to a remote DoS attack or information disclosure, related to mishandling of the NAN and INFINITY floating-point values.

https://nvd.nist.gov/vuln/detail/CVE-2017-14245

Other Downloads


Live chat
Online