Heap-based buffer overflow in shairport-sync - #VU147256
Published: September 7, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to improper bounds checking resulting in a heap-based buffer overflow in unencrypted_packet_decode() when decoding oversized UDP audio packets during a classic-AirPlay session. A remote attacker can send an oversized UDP audio packet to cause a denial of service.
Only classic builds using the deprecated Hammerton ALAC decoder are affected; AirPlay-2-only builds do not use this audio path.