<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-05T06:47:06.500430+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0969</id>
    <title>certfr-2025-avi-0969 — De multiples vulnérabilités ont été découvertes dans les produits VMware. Elles permettent à un attaquant de provoquer…</title>
    <updated>2026-10-05T06:47:06.510496+00:00</updated>
    <content>certfr-2025-avi-0969</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-0969"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2017-03538</id>
    <title>cnvd-2017-03538</title>
    <updated>2026-10-05T06:47:06.510539+00:00</updated>
    <content>cnvd-2017-03538</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2017-03538"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-74240</id>
    <title>EUVD-2026-74240</title>
    <updated>2026-10-05T06:47:06.510564+00:00</updated>
    <content>EUVD-2026-74240</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-74240"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2017-6838</id>
    <title>fkie_cve-2017-6838</title>
    <updated>2026-10-05T06:47:06.510576+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Integer overflow in sfcommands/sfconvert.c in Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause a denial of service (crash) via a crafted file.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2017-6838"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-9q7g-4jpg-gvhv</id>
    <title>GHSA-9q7g-4jpg-gvhv</title>
    <updated>2026-10-05T06:47:06.510604+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Integer overflow in sfcommands/sfconvert.c in Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause a denial of service (crash) via a crafted file.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-9q7g-4jpg-gvhv"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2017-6838</id>
    <title>gsd-2017-6838</title>
    <updated>2026-10-05T06:47:06.510619+00:00</updated>
    <content>gsd-2017-6838</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2017-6838"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2017-6838</id>
    <title>msrc_CVE-2017-6838 — Integer overflow in sfcommands/sfconvert.c in Audio File Library</title>
    <updated>2026-10-05T06:47:06.510629+00:00</updated>
    <content>msrc_CVE-2017-6838</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2017-6838"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2021-1040</id>
    <title>OESA-2021-1040 — audiofile security update</title>
    <updated>2026-10-05T06:47:06.510644+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS: audiofile, openEuler:20.03-LTS-SP1: audiofile</p>
<p>The Audio File Library is a C-based library for reading and writing audio files in many common formats.  The Audio File Library provides a uniform API which abstracts away details of file formats and data formats. The same calls for opening a file, accessing and manipulating audio metadata (e.g. sample rate, sample format, textual information, MIDI parameters), and reading and writing sample data will work with any supported audio file format.

Security Fix(es):

Heap-based buffer overflow in the readValue function in FileHandle.cpp in audiofile (aka libaudiofile and Audio File Library) 0.3.6 allows remote attackers to have unspecified impact via a crafted WAV file.(CVE-2017-6828)

Integer overflow in modules/MSADPCM.cpp in Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause a denial of service (crash) via a crafted file.(CVE-2017-6839)

Integer overflow in sfcommands/sfconvert.c in Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause a denial of service (crash) via a crafted file.(CVE-2017-6838)

Heap-based buffer overflow in the decodeBlockWAVE function in IMA.cpp in Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause a denial of service (crash) via a crafted file.(CVE-2017-6831)

The decodeSample function in IMA.cpp in Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause a denial of service (crash) via a crafted file.(CVE-2017-6829)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2021-1040"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2017:0940-1</id>
    <title>SUSE-SU-2017:0940-1 — Security update for audiofile</title>
    <updated>2026-10-05T06:47:06.510676+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for audiofile</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2017:0940-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-6838</id>
    <title>UBUNTU-CVE-2017-6838</title>
    <updated>2026-10-05T06:47:06.510698+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: audiofile, Ubuntu:16.04:LTS: audiofile</p>
<p>Integer overflow in sfcommands/sfconvert.c in Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause a denial of service (crash) via a crafted file.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-6838"/>
  </entry>
</feed>
