Information on source package fluidsynth

Available versions

ReleaseVersion
bullseye2.1.7-1.1
bookworm2.3.1-2
trixie2.4.4+dfsg-1+deb13u2
forky2.5.7+dfsg-1
sid2.5.7+dfsg-1

Open issues

BugbullseyebookwormtrixieforkysidDescription
CVE-2026-61714fixedvulnerable (no DSA, postponed)vulnerablefixedfixedheap-based buffer overflow in MIDI player
CVE-2026-58264vulnerable (no DSA, postponed)vulnerable (no DSA, postponed)vulnerablefixedfixedheap-based buffer overrun in command handler
CVE-2025-56225vulnerable (no DSA, postponed)vulnerable (no DSA)fixedfixedfixedfluidsynth-2.4.6 and earlier versions is vulnerable to Null pointer de ...

Resolved issues

BugDescription
CVE-2026-61723]DLS ptbl chunk integer overflow]
CVE-2026-61722DLS articulation chunk integer overflow
CVE-2026-61721heap-based buffer overrun for DLS samples
CVE-2026-61720SF2 DMOD chunk integer underflow
CVE-2025-68617FluidSynth is a software synthesizer based on the SoundFont 2 specific ...
CVE-2021-21417fluidsynth is a software synthesizer based on the SoundFont 2 specific ...

Security announcements

DSA / DLADescription
DLA-2697-1fluidsynth - security update

Search for package or bug name: Reporting problems