CVE-2025-52194: Libsndfile Project Libsndfile
High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.
A buffer overflow vulnerability exists in libsndfile version 1.2.2 and potentially earlier versions when processing malformed IRCAM audio files. The vulnerability occurs in the ircam_read_header function at src/ircam.c:164 during sample rate processing, leading to memory corruption and potential code execution.
Affected products
- Libsndfile Project Libsndfile: up to and including 1.2.2
Published 2025-08-21. Last modified 2026-06-17.