ELA-464-1 libsndfile security update

heap buffer overflow

2021-07-30
Packagelibsndfile
Version1.0.25-9.1+deb8u6
Related CVEs CVE-2021-3246


An issue has been found in libsndfile, a library for reading/writing audio files. A crafted WAV file can trigger a heap buffer overflow and might allow exectution of arbitrary code.



For Debian 8 jessie, these problems have been fixed in version 1.0.25-9.1+deb8u6.

We recommend that you upgrade your libsndfile packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.