Vulnerability Manager Plus
Free Trial
  • Overview
  • Features
  • Demo
  • Documents
  • Get Quote
  • Support
Home
 

Library for reading/writing audio files (USN-3306-1) libsndfile1_1.0.25-10ubuntu0.16.10.1_i386.deb

Risk Information

Base Score
8.8
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Base Score
7.0
MODERATE
Vector
I:P/AV:N/Au:N/AC:M/A:P/C:P
EPSS Score
Exploitation Probability
1.535%

CVE Information

Source CVE
CVE-2017-8361

Associated CVE
CVE-2017-8361
CVE-2017-7585
CVE-2017-7586
CVE-2017-7741
CVE-2017-7742

Patch Details

No records found

References

http://www.mega-nerd.com/libsndfile/#History
http://www.mega-nerd.com/libsndfile/NEWS
http://www.securityfocus.com/bid/97522
https://blogs.gentoo.org/ago/2017/04/11/libsndfile-invalid-memory-read-and-invalid-memory-write-in/
https://blogs.gentoo.org/ago/2017/04/29/libsndfile-global-buffer-overflow-in-flac_buffer_copy-flac-c/
https://github.com/erikd/libsndfile/commit/60b234301adf258786d8b90be5c1d437fc8799e0
https://github.com/erikd/libsndfile/commit/708e996c87c5fae77b104ccfeb8f6db784c32074
https://github.com/erikd/libsndfile/commit/f457b7b5ecfe91697ed01cfc825772c4d8de1236
https://lists.debian.org/debian-lts-announce/2018/12/msg00016.html
https://secuniaresearch.flexerasoftware.com/secunia_research/2017-4/
https://security.gentoo.org/glsa/201707-04
https://security.gentoo.org/glsa/201811-23

Details

CWE ID
CWE-119
CWE Type
Overflow
Vulnerability ID
31647
Published
2017-04-30
Updated
2026-02-27

Vulnerability Intelligence

Evaluate vulnerabilities across managed endpoints with enriched threat intelligence and risk context such as:

Risk Score
Emerging Risk Catalog
CERT Advisories
Risk Indicators