LWN.net Logo

libmikmod: arbitrary code execution

Package(s):libmikmod CVE #(s):CVE-2009-3996
Created:July 8, 2010 Updated:October 11, 2010
Description:

From the MeeGo advisory:

Heap-based buffer overflow in IN_MOD.DLL (aka the Module Decoder Plug-in) in Winamp before 5.57, and libmikmod 3.1.12, might allow remote attackers to execute arbitrary code via an Ultratracker file.

Alerts:
Ubuntu USN-995-1 2010-09-29
Red Hat RHSA-2010:0720-01 2010-09-28
Fedora FEDORA-2010-13702 2010-08-30
CentOS CESA-2010:0720 2010-10-10
CentOS CESA-2010:0720 2010-09-29
CentOS CESA-2010:0720 2010-09-29
Mandriva MDVSA-2010:151 2010-08-16
Debian DSA-2071-1 2010-07-14
MeeGo MeeGo-SA-10:04 2010-07-07

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds