LWN.net Logo

libvorbis: arbitrary code execution

Package(s):libvorbis CVE #(s):CVE-2009-3379
Created:November 9, 2009 Updated:April 3, 2012
Description:

From the Red Hat advisory:

Multiple flaws were found in the libvorbis library. A specially-crafted Ogg Vorbis media format file (Ogg) could cause an application using libvorbis to crash or, possibly, execute arbitrary code when opened. (CVE-2009-3379)

Alerts:
Ubuntu USN-861-1 2009-11-24
Fedora FEDORA-2009-11169 2009-11-10
Debian DSA-1939-1 2009-11-24
Red Hat RHSA-2009:1561-01 2009-11-09
CentOS CESA-2009:1561 2009-11-09
CentOS CESA-2009:1561 2009-11-09
CentOS CESA-2009:1561 2009-11-14
Fedora FEDORA-2009-11243 2009-11-10
Mandriva MDVSA-2012:051 2012-04-03
Gentoo 201301-01 2013-01-07

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds