CVE-2018-13419

An issue has been found in libsndfile 1.0.28. There is a memory leak in psf_allocate in common.c, as demonstrated by sndfile-convert. NOTE: The maintainer and third parties were unable to reproduce and closed the issue
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.5 MEDIUM
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 66%
Affected Products (NVD)
VendorProductVersion
libsndfile_projectlibsndfile
1.0.28
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
libsndfile
artful
ignored
bionic
ignored
cosmic
ignored
trusty
ignored
xenial
ignored
Azure Linux logo
Azure Linux Releases
Azure Package
Release
libsndfile
CBL-Mariner 1.0
0:1.0.31-1.cm1
fixed