An issue has been discovered in mpruett Audio File Library (aka audiofile) 0.3.6, 0.3.5, 0.3.4, 0.3.3, 0.3.2, 0.3.1, 0.3.0. A heap-based buffer overflow in Expand3To4Module::run has occurred when running sfconvert.
{
"versions": [
{
"introduced": "0"
},
{
"last_affected": "0.3.0"
},
{
"introduced": "0"
},
{
"last_affected": "0.3.1"
},
{
"introduced": "0"
},
{
"last_affected": "0.3.2"
},
{
"introduced": "0"
},
{
"last_affected": "0.3.3"
},
{
"introduced": "0"
},
{
"last_affected": "0.3.4"
},
{
"introduced": "0"
},
{
"last_affected": "0.3.5"
},
{
"introduced": "0"
},
{
"last_affected": "0.3.6"
}
]
}