In Xiph.Org libvorbis 1.3.5, an out-of-bounds array read vulnerability exists in the function mapping0forward() in mapping0.c, which may lead to DoS when operating on a crafted audio file with vorbisanalysis().
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-14633.json"