FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

libmysoft -- Heap-based buffer overflow vulnerability

Affected packages
libmysofa < 1.2.1.13

Details

VuXML ID 4d763c65-9246-11ec-9aa3-4ccc6adda413
Discovery 2021-09-27
Entry 2022-02-20

Zhengjie Du reports:

There are some heap-buffer-overflows in mysofa2json of libmysofa. They are in function loudness, mysofa_check and readOHDRHeaderMessageDataLayout.

References

CVE Name CVE-2021-3756
URL https://www.huntr.dev/bounties/7ca8d9ea-e2a6-4294-af28-70260bb53bc1/