|
libsndfile contains an integer overflow condition in the handling of Core Audio Format (CAF) media files. The issue is due to the library not validating user-supplied input. With a specially crafted CAF file containing malformed description chunks, a context-dependent attacker can cause a heap-based buffer overflow, resulting in a denial of service or potentially execution of arbitrary code.
|