In libsamplerate before 0.1.9, a buffer over-read occurs in the calcoutputsingle function in src_sinc.c via a crafted audio file.
{ "urgency": "not yet assigned" }