WavPack 5.3.0 has an out-of-bounds write in WavpackPackSamples in pack_utils.c because of an integer overflow in a malloc argument. NOTE: some third-parties claim that there are later "unofficial" releases through 5.3.2, which are also affected.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2020-35738.json"