Red Hat Bugzilla – Bug 1598480
CVE-2018-13139 libsndfile: stack-based buffer overflow in sndfile-deinterleave utility
Last modified: 2018-10-24 12:15:01 EDT
A flaw was found in libsndfile 1.0.28. A stack-based buffer overflow when processing files with an unexpected amount of channels within the sndfile-deinterlace utility can be exploited by attackers to cause a crash, or, possibly, execute arbitrary code. References: https://github.com/erikd/libsndfile/issues/397
Created libsndfile tracking bugs for this issue: Affects: fedora-all [bug 1598481]
Statement: This issue did not affect the versions of libsndfile as shipped with Red Hat Enterprise Linux 6. This issue affects the versions of libsndfile as shipped with Red Hat Enterprise Linux 7.