Debian Package Tracker
Register | Log in
Subscribe

libsndfile

Choose email to subscribe with

general
  • source: libsndfile (main)
  • version: 1.0.31-2
  • maintainer: Debian Multimedia Maintainers (archive) (DMD)
  • uploaders: IOhannes m zmölnig (Debian/GNU) [DMD]
  • arch: any
  • std-ver: 4.5.1
  • VCS: Git (Browse, QA)
versions [more versions can be listed by madison] [old versions available from snapshot.debian.org]
[pool directory]
  • o-o-stable: 1.0.27-3
  • o-o-sec: 1.0.27-3+deb9u2
  • oldstable: 1.0.28-6+deb10u1
  • old-sec: 1.0.28-6+deb10u1
  • stable: 1.0.31-2
  • testing: 1.0.31-2
  • unstable: 1.0.31-2
versioned links
  • 1.0.27-3: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 1.0.27-3+deb9u2: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 1.0.28-6+deb10u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 1.0.31-2: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
binaries
  • libsndfile1 (2 bugs: 0, 1, 1, 0)
  • libsndfile1-dev (1 bugs: 0, 1, 0, 0)
  • sndfile-programs
action needed
A new upstream version is available: 1.1.0beta2 high
A new upstream version 1.1.0beta2 is available, you should consider packaging it.
Created: 2021-07-25 Last update: 2022-05-29 05:32
1 security issue in sid high

There is 1 open security issue in sid.

1 important issue:
  • CVE-2021-4156: An out-of-bounds read flaw was found in libsndfile's FLAC codec functionality. An attacker who is able to submit a specially crafted file (via tricking a user to open or otherwise) to an application linked with libsndfile and using the FLAC codec, could trigger an out-of-bounds read that would most likely cause a crash but could potentially leak memory information that could be used in further exploitation of other flaws.
Created: 2021-12-23 Last update: 2022-03-25 06:10
1 security issue in bookworm high

There is 1 open security issue in bookworm.

1 important issue:
  • CVE-2021-4156: An out-of-bounds read flaw was found in libsndfile's FLAC codec functionality. An attacker who is able to submit a specially crafted file (via tricking a user to open or otherwise) to an application linked with libsndfile and using the FLAC codec, could trigger an out-of-bounds read that would most likely cause a crash but could potentially leak memory information that could be used in further exploitation of other flaws.
Created: 2021-12-23 Last update: 2022-03-25 06:10
Depends on packages which need a new maintainer normal
The packages that libsndfile depends on which need a new maintainer are:
  • autogen (#1010062)
    • Build-Depends: autogen
Created: 2022-04-23 Last update: 2022-05-29 09:37
1 bug tagged patch in the BTS normal
The BTS contains patches fixing 1 bug, consider including or untagging them.
Created: 2022-01-11 Last update: 2022-05-29 09:31
1 low-priority security issue in buster low

There is 1 open security issue in buster.

1 issue left for the package maintainer to handle:
  • CVE-2021-4156: (needs triaging) An out-of-bounds read flaw was found in libsndfile's FLAC codec functionality. An attacker who is able to submit a specially crafted file (via tricking a user to open or otherwise) to an application linked with libsndfile and using the FLAC codec, could trigger an out-of-bounds read that would most likely cause a crash but could potentially leak memory information that could be used in further exploitation of other flaws.

You can find information about how to handle this issue in the security team's documentation.

Created: 2021-12-23 Last update: 2022-03-25 06:10
1 low-priority security issue in bullseye low

There is 1 open security issue in bullseye.

1 issue left for the package maintainer to handle:
  • CVE-2021-4156: (needs triaging) An out-of-bounds read flaw was found in libsndfile's FLAC codec functionality. An attacker who is able to submit a specially crafted file (via tricking a user to open or otherwise) to an application linked with libsndfile and using the FLAC codec, could trigger an out-of-bounds read that would most likely cause a crash but could potentially leak memory information that could be used in further exploitation of other flaws.

You can find information about how to handle this issue in the security team's documentation.

Created: 2021-12-23 Last update: 2022-03-25 06:10
Build log checks report 1 warning low
Build log checks report 1 warning
Created: 2021-01-12 Last update: 2021-01-12 00:05
Standards version of the package is outdated. wishlist
The package should be updated to follow the last version of Debian Policy (Standards-Version 4.6.1 instead of 4.5.1).
Created: 2021-08-18 Last update: 2022-05-11 23:24
news
[rss feed]
  • [2021-08-01] libsndfile 1.0.31-2 MIGRATED to testing (Debian testing watch)
  • [2021-07-31] Accepted libsndfile 1.0.28-6+deb10u1 (source amd64) into proposed-updates->stable-new, proposed-updates (Debian FTP Masters) (signed by: Moritz Mühlenhoff)
  • [2021-07-30] Accepted libsndfile 1.0.28-6+deb10u1 (source amd64) into stable->embargoed, stable (Debian FTP Masters) (signed by: Moritz Mühlenhoff)
  • [2021-07-29] Accepted libsndfile 1.0.27-3+deb9u2 (source amd64) into oldstable (Thorsten Alteholz)
  • [2021-07-26] Accepted libsndfile 1.0.31-2 (source) into unstable (Sebastian Ramacher)
  • [2021-02-01] libsndfile 1.0.31-1 MIGRATED to testing (Debian testing watch)
  • [2021-01-29] Accepted libsndfile 1.0.31-1 (source) into unstable (IOhannes m zmölnig (Debian/GNU)) (signed by: IOhannes m zmölnig)
  • [2021-01-14] libsndfile 1.0.30-1 MIGRATED to testing (Debian testing watch)
  • [2021-01-11] Accepted libsndfile 1.0.30-1 (source) into unstable (IOhannes m zmölnig (Debian/GNU)) (signed by: IOhannes m zmölnig)
  • [2020-10-29] Accepted libsndfile 1.0.27-3+deb9u1 (source amd64) into oldstable (Thorsten Alteholz)
  • [2020-05-31] libsndfile 1.0.28-8 MIGRATED to testing (Debian testing watch)
  • [2020-05-25] Accepted libsndfile 1.0.28-8 (source) into unstable (Mattia Rizzolo)
  • [2020-02-23] libsndfile 1.0.28-7 MIGRATED to testing (Debian testing watch)
  • [2020-02-18] Accepted libsndfile 1.0.28-7 (source) into unstable (IOhannes m zmölnig (Debian/GNU)) (signed by: IOhannes m zmölnig)
  • [2019-03-19] libsndfile 1.0.28-6 MIGRATED to testing (Debian testing watch)
  • [2019-03-13] Accepted libsndfile 1.0.25-9.1+deb8u4 (source amd64) into oldstable (Emilio Pozuelo Monfort)
  • [2019-03-08] Accepted libsndfile 1.0.28-6 (source) into unstable (IOhannes m zmölnig (Debian/GNU)) (signed by: IOhannes m zmölnig)
  • [2019-02-24] libsndfile 1.0.28-5 MIGRATED to testing (Debian testing watch)
  • [2019-02-12] Accepted libsndfile 1.0.28-5 (source) into unstable (IOhannes m zmölnig (Debian/GNU)) (signed by: IOhannes m zmölnig)
  • [2019-01-10] Accepted libsndfile 1.0.25-9.1+deb8u3 (source amd64) into oldstable (Hugo Lefeuvre)
  • [2018-12-24] Accepted libsndfile 1.0.25-9.1+deb8u2 (source amd64) into oldstable (Hugo Lefeuvre)
  • [2017-08-22] libsndfile 1.0.28-4 MIGRATED to testing (Debian testing watch)
  • [2017-08-17] Accepted libsndfile 1.0.28-4 (source) into unstable (IOhannes m zmölnig (Debian/GNU)) (signed by: IOhannes m zmölnig)
  • [2017-08-07] Accepted libsndfile 1.0.25-9.1+deb7u4 (source amd64) into oldoldstable (Chris Lamb)
  • [2017-07-18] libsndfile 1.0.28-3 MIGRATED to testing (Debian testing watch)
  • [2017-07-12] Accepted libsndfile 1.0.28-3 (source) into unstable (IOhannes m zmölnig (Debian/GNU)) (signed by: IOhannes m zmölnig)
  • [2017-06-26] libsndfile 1.0.28-2 MIGRATED to testing (Debian testing watch)
  • [2017-06-20] Accepted libsndfile 1.0.28-2 (source) into unstable (IOhannes m zmölnig (Debian/GNU)) (signed by: IOhannes m zmölnig)
  • [2017-06-20] Accepted libsndfile 1.0.28-1 (source) into unstable (IOhannes m zmölnig (Debian/GNU)) (signed by: IOhannes m zmölnig)
  • [2017-06-15] Accepted libsndfile 1.0.25-9.1+deb7u3 (source amd64) into oldstable (Chris Lamb)
  • 1
  • 2
bugs [bug history graph]
  • all: 4
  • RC: 0
  • I&N: 3
  • M&W: 1
  • F&P: 0
  • patch: 1
links
  • homepage
  • lintian
  • buildd: logs, checks, clang, reproducibility, cross
  • popcon
  • browse source code
  • edit tags
  • other distros
  • security tracker
  • debci
ubuntu Ubuntu logo [Information about Ubuntu for Debian Developers]
  • version: 1.0.31-2build1
  • 1 bug

Debian Package Tracker — Copyright 2013-2018 The Distro Tracker Developers
Report problems to the tracker.debian.org pseudo-package in the Debian BTS.
Documentation — Bugs — Git Repository — Contributing