1 issue left for the package maintainer to handle:
CVE-2019-13147:
(needs triaging)
In Audio File Library (aka audiofile) 0.3.6, there exists one NULL pointer dereference bug in ulaw2linear_buf in G711.cpp in libmodules.a that allows an attacker to cause a denial of service via a crafted file.
debian/patches: 11 patches to forward upstream
low
Among the 15 debian patches
available in version 0.3.6-7 of the package,
we noticed the following issues:
11 patches
where the metadata indicates that the patch has not yet been forwarded
upstream. You should either forward the patch upstream or update the
metadata to document its real status.