Wind River Support Network

HomeDefectsLIN6-13785
Fixed

LIN6-13785 : Security Advisory - libsndfile - CVE-2017-14634

Created: Sep 26, 2017    Updated: Jun 3, 2019
Resolved Date: Jan 3, 2018
Found In Version: 6.0.0.34
Fix Version: 6.0.0.36
Severity: Standard
Applicable for: Wind River Linux 6
Component/s: Userspace

Description

In libsndfile 1.0.28, a divide-by-zero error exists in the function double64_init() in double64.c, which may lead to DoS when playing a crafted audio file.

https://nvd.nist.gov/vuln/detail/CVE-2017-14634

Other Downloads


Live chat
Online