CVE-2025-52194: Libsndfile Project Libsndfile

High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.

A buffer overflow vulnerability exists in libsndfile version 1.2.2 and potentially earlier versions when processing malformed IRCAM audio files. The vulnerability occurs in the ircam_read_header function at src/ircam.c:164 during sample rate processing, leading to memory corruption and potential code execution.

Affected products

Published 2025-08-21. Last modified 2026-06-17.