Out-of-bounds read in libsndfile - CVE-2024-50612
Published: November 21, 2024
Vulnerability identifier: #VU100774
CSH Severity: Medium
CVSS v4: 6.7 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2024-50612
CWE-ID: CWE-125
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a boundary condition within the vorbis_analysis_wrote() function in ogg_vorbis.c. A remote attacker can trick the victim into opening a specially crafted file and crash the application.
Affected software
libsndfile
Anolis OS
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for ARM 64
Red Hat CodeReady Linux Builder for x86_64
Red Hat CodeReady Linux Builder for Power, little endian
Red Hat CodeReady Linux Builder for ARM 64
Red Hat CodeReady Linux Builder for IBM z Systems
Ubuntu
openEuler
Fedora
sndfile-programs (Ubuntu package)
libsndfile1 (Ubuntu package)
libsndfile (Red Hat package)
libsndfile-doc
libsndfile-devel
libsndfile
libsndfile-utils-help
libsndfile-utils
libsndfile-debuginfo
libsndfile-debugsource
OpenShift API for Data Protection (OADP)
IBM Cloud Pak for Multicloud Management
App Connect Enterprise Certified Container
Anolis OS
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for ARM 64
Red Hat CodeReady Linux Builder for x86_64
Red Hat CodeReady Linux Builder for Power, little endian
Red Hat CodeReady Linux Builder for ARM 64
Red Hat CodeReady Linux Builder for IBM z Systems
Ubuntu
openEuler
Fedora
sndfile-programs (Ubuntu package)
libsndfile1 (Ubuntu package)
libsndfile (Red Hat package)
libsndfile-doc
libsndfile-devel
libsndfile
libsndfile-utils-help
libsndfile-utils
libsndfile-debuginfo
libsndfile-debugsource
OpenShift API for Data Protection (OADP)
IBM Cloud Pak for Multicloud Management
App Connect Enterprise Certified Container
How to mitigate CVE-2024-50612
Install updates from vendor's website.
sndfile-programs (Ubuntu package) - addressed in versions Ubuntu Pro, 1.0.28-7ubuntu0.3, 1.0.31-2ubuntu0.2, 1.2.2-1ubuntu5.24.04.1, 1.2.2-1ubuntu5.24.10.1
libsndfile1 (Ubuntu package) - addressed in versions sndfile-programs, Ubuntu Pro, 1.0.28-7ubuntu0.3, 1.0.31-2ubuntu0.2, 1.2.2-1ubuntu5.24.04.1, 1.2.2-1ubuntu5.24.10.1
libsndfile (Red Hat package) - addressed in versions 1.0.28-16.el8_10, 1.0.31-8.el9_4.1, 1.0.31-8.el9_5.2
libsndfile-doc - addressed in versions 1.0.28-16.0.1, 1.2.2-1
libsndfile-devel - addressed in versions 1.0.28-16.0.1, 1.2.2-1
libsndfile - addressed in versions 1.0.28-16.0.1, 1.2.2-1
libsndfile-utils-help - addressed in versions 1.0.28-23, 1.0.31-5, 1.2.2-3
libsndfile-utils - addressed in versions 1.0.28-23, 1.0.31-5, 1.2.2-3
libsndfile - addressed in versions 1.0.28-23, 1.0.31-5, 1.2.2-3
libsndfile-debuginfo - addressed in versions 1.0.28-23, 1.0.31-5, 1.2.2-3
libsndfile-debugsource - addressed in versions 1.0.28-23, 1.0.31-5, 1.2.2-3
libsndfile-devel - addressed in versions 1.0.28-23, 1.0.31-5, 1.2.2-3
libsndfile-utils - update to 1.2.2-1
libsndfile - addressed in versions 1.2.2-4.fc40, 1.2.2-5.fc41, 1.2.2-5.fc42
OpenShift API for Data Protection (OADP) - update to 1.4.2
IBM Cloud Pak for Multicloud Management - update to 2.3 FP11
App Connect Enterprise Certified Container - update to 12.8.0
libsndfile1 (Ubuntu package) - addressed in versions sndfile-programs, Ubuntu Pro, 1.0.28-7ubuntu0.3, 1.0.31-2ubuntu0.2, 1.2.2-1ubuntu5.24.04.1, 1.2.2-1ubuntu5.24.10.1
libsndfile (Red Hat package) - addressed in versions 1.0.28-16.el8_10, 1.0.31-8.el9_4.1, 1.0.31-8.el9_5.2
libsndfile-doc - addressed in versions 1.0.28-16.0.1, 1.2.2-1
libsndfile-devel - addressed in versions 1.0.28-16.0.1, 1.2.2-1
libsndfile - addressed in versions 1.0.28-16.0.1, 1.2.2-1
libsndfile-utils-help - addressed in versions 1.0.28-23, 1.0.31-5, 1.2.2-3
libsndfile-utils - addressed in versions 1.0.28-23, 1.0.31-5, 1.2.2-3
libsndfile - addressed in versions 1.0.28-23, 1.0.31-5, 1.2.2-3
libsndfile-debuginfo - addressed in versions 1.0.28-23, 1.0.31-5, 1.2.2-3
libsndfile-debugsource - addressed in versions 1.0.28-23, 1.0.31-5, 1.2.2-3
libsndfile-devel - addressed in versions 1.0.28-23, 1.0.31-5, 1.2.2-3
libsndfile-utils - update to 1.2.2-1
libsndfile - addressed in versions 1.2.2-4.fc40, 1.2.2-5.fc41, 1.2.2-5.fc42
OpenShift API for Data Protection (OADP) - update to 1.4.2
IBM Cloud Pak for Multicloud Management - update to 2.3 FP11
App Connect Enterprise Certified Container - update to 12.8.0
External References
Related Security Bulletins
- Denial of service in libsndfile
- Fedora 40 update for libsndfile
- Fedora 42 update for libsndfile
- Fedora 41 update for libsndfile
- openEuler 24.03 LTS update for libsndfile
- Red Hat Enterprise Linux 9 update for libsndfile
- Red Hat Enterprise Linux 8 update for libsndfile
- Red Hat Enterprise Linux 9 update for the libsndfile:1.0.31 module
- Multiple vulnerabilities in OpenShift API for Data Protection (OADP) 1.4
- Multiple vulnerabilities in IBM App Connect Enterprise Certified Container
- Ubuntu update for libsndfile
- Ubuntu update for libsndfile
- Ubuntu update for libsndfile
- Anolis OS update for libsndfile
- Anolis OS update for libsndfile
- Multiple vulnerabilities in IBM Cloud Pak for Multicloud Management
- openEuler 22.03 LTS SP4 update for libsndfile
- openEuler 22.03 LTS SP3 update for libsndfile
- openEuler 20.03 LTS SP4 update for libsndfile