|
Pardus: audiofile: Heap Overflow |
|
|
|
Posted by Benjamin D. Thomas
|
There is a bug in libaudiofile when attempting to decode the file, libaudiofile writes past the buffer in msadpcm.c.
------------------------------------------------------------------------
Pardus Linux Security Advisory 2009-07 security@pardus.org.tr
------------------------------------------------------------------------
Date: 2009-01-14
Severity: 2
Type: Local
------------------------------------------------------------------------
Summary
=======
There is a bug in libaudiofile when attempting to decode the file,
libaudiofile writes past the buffer in msadpcm.c.
Description
===========
Please update your package.
Affected packages:
Pardus 2008:
audiofile, all before 0.2.6-4-3
Resolution
==========
There are update(s) for audiofile. You can update them via Package
Manager or with a single command from console:
pisi up audiofile
References
==========
* http://bugs.pardus.org.tr/show_bug.cgi?id=8971
* http://musicpd.org/mantis/view.php?id=1915
|