TagLib before 2.0 allows a segmentation violation and application crash during tag writing via a crafted WAV file in which an id3 chunk is the only valid chunk.
{ "availability": "No subscription required", "ubuntu_priority": "low", "binaries": [ { "binary_version": "2.0.2-2", "binary_name": "libtag-c-dev" }, { "binary_version": "2.0.2-2", "binary_name": "libtag-c2" }, { "binary_version": "2.0.2-2", "binary_name": "libtag-c2-dbgsym" }, { "binary_version": "2.0.2-2", "binary_name": "libtag-dev" }, { "binary_version": "2.0.2-2", "binary_name": "libtag-doc" }, { "binary_version": "2.0.2-2", "binary_name": "libtag1-dev" }, { "binary_version": "2.0.2-2", "binary_name": "libtag2" }, { "binary_version": "2.0.2-2", "binary_name": "libtag2-dbgsym" }, { "binary_version": "2.0.2-2", "binary_name": "libtagc0-dev" } ], "priority_reason": "Only a denial of service when writing to a corrupted WAV file" }