Upstream identified and released newer version for security issues. Please bump to 0.64. Thanks! Reproducible: Always
Security team usually doens't handle client-side DoS since you can have the same behaviour with a bad/corrupted sound file. Reassigning
Bumped to 0.65; security what do you want to do?
(In reply to comment #2) > Bumped to 0.65; security what do you want to do? > Security wants to go to bed :) From the security point of view, nothing needs to be done. Closing, feel free to reopen if you disagree.