Your submission was sent successfully! Close

CVE-2015-7747

Published: 9 October 2015

Buffer overflow in the afReadFrames function in audiofile (aka libaudiofile and Audio File Library) allows user-assisted remote attackers to cause a denial of service (program crash) or possibly execute arbitrary code via a crafted audio file, as demonstrated by sixteen-stereo-to-eight-mono.c.

Priority

Medium

CVSS 3 base score: 8.8

Status

Package Release Status
audiofile
Launchpad, Ubuntu, Debian
precise
Released (0.3.3-2ubuntu0.1)
trusty
Released (0.3.6-2ubuntu0.14.04.1)
upstream Needs triage

vivid
Released (0.3.6-2ubuntu0.15.04.1)
wily
Released (0.3.6-2ubuntu0.15.10.1)