In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade Debian:unstable
miniaudio
to version 0.11.22+dfsg-1 or higher.
Note: Versions mentioned in the description apply only to the upstream miniaudio
package and not the miniaudio
package as distributed by Debian
.
See How to fix?
for Debian:unstable
relevant fixed versions and status.
An out-of-bounds write vulnerability exists in the ma_dr_flac__decode_samples__lpc functionality of Miniaudio miniaudio v0.11.21. A specially crafted .flac file can lead to memory corruption. An attacker can provide a malicious file to trigger this vulnerability.