LWN.net Logo

libsndfile: arbitrary code execution, denial of service

Package(s):libsndfile CVE #(s):CVE-2009-0186
Created:March 6, 2009 Updated:December 3, 2009
Description: From the Mandriva advisory: Crafted data - channels per frame value - in CAF files enables remote attackers to execute arbitrary code or denial of service via a possible integer overflow, leading to a possible heap overflow.
Alerts:
Fedora FEDORA-2009-11618 2009-11-16
Fedora FEDORA-2009-11499 2009-11-16
Gentoo 200904-16 2009-04-17
Ubuntu USN-749-1 2009-03-30
Debian DSA-1742-1 2009-03-16
Mandriva MDVSA-2009:067 2008-03-05

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds