OCTOBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-88372

HIGH · CVSS 7.5 EPSS 0.39% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-24 · Last synced 2026-10-09

CyberRota Analysis

AI-Generated

The integer overflow vulnerability in the mat4_read_header() function of libsndfile 1.2.2 can be exploited when processing specially crafted MAT4 files, potentially leading to memory corruption and arbitrary code execution. Organizations using libsndfile for audio file processing should prioritize this issue to mitigate risks associated with malicious file handling. Immediate attention is recommended for environments where untrusted audio files may be processed.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-88372
Severity
HIGH
CVSS
7.5
EPSS
0.39%

Original NVD Description

libsndfile 1.2.2 contains an integer overflow vulnerability in mat4_read_header() when parsing crafted MAT4 (MATLAB v4) files.