An off-by-one error in function wav_read_header in src/wav.c in Libsndfile 1.1.0, results in a write out of bound, which allows an attacker to execute arbitrary code, Denial of Service or other unspecified impacts.
A product calculates or uses an incorrect maximum or minimum value that is 1 more, or 1 less, than the correct value.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Libsndfile | Libsndfile_project | 1.1.0 (including) | 1.1.0 (including) |
Libsndfile | Ubuntu | bionic | * |
Libsndfile | Ubuntu | kinetic | * |
Libsndfile | Ubuntu | lunar | * |
Libsndfile | Ubuntu | mantic | * |
Libsndfile | Ubuntu | trusty | * |
Libsndfile | Ubuntu | xenial | * |