An off-by-one error in function wavreadheader in src/wav.c in Libsndfile 1.1.0, results in a write out of bound, which allows an attacker to execute arbitrary code, Denial of Service or other unspecified impacts.
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-28506.json"