The RateTransposer::setChannels function in RateTransposer.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (assertion failure and application exit), as demonstrated by SoundStretch.
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "2.1.2+ds1-1build1", "binary_name": "libsoundtouch-dev" }, { "binary_version": "2.1.2+ds1-1build1", "binary_name": "libsoundtouch1" }, { "binary_version": "2.1.2+ds1-1build1", "binary_name": "libsoundtouch1-dbgsym" }, { "binary_version": "2.1.2+ds1-1build1", "binary_name": "soundstretch" }, { "binary_version": "2.1.2+ds1-1build1", "binary_name": "soundstretch-dbgsym" } ] }