Report: CVE-2026-32837 - mackron / miniaudio Out-of-Bounds Read in BEXT Coding History Parsing
CVE ID :CVE-2026-32837 Published : March 17, 2026, 8:16 p.m. | 2 hours, 17 minutes ago Description :miniaudio version 0.11.25 and earlier contain a heap out-of-bounds read vulnerability in the WAV BEXT metadata parser that allows attackers to trigger memory access violations by processing crafted WAV files. Attackers can exploit improper null-termination handling in the coding history field to cause out-of-bounds reads past the allocated metadata pool, resulting in application crashes or denial of service. Severity: 5.1 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...