Bugzilla – Bug 1117925
VUL-1: CVE-2018-19662: libsndfile: buffer over-read in the function i2alaw_array in alaw.c that will lead to a denial of service.
Last modified: 2020-04-28 14:59:41 UTC
CVE-2018-19662 An issue was discovered in libsndfile 1.0.28. There is a buffer over-read in the function i2alaw_array in alaw.c that will lead to a denial of service. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2018-19662 http://people.canonical.com/~ubuntu-security/cve/2018/CVE-2018-19662.html
same reproducer as in bug 1117906 , could not reproduce (might be fixed already)
Then this should be a dup of the previous bug. Reassigned back to security team. Feel free to give back if it turns out to be a different issue to be fixed.
Closing