|
|
| |
|
| |
libvorbis: code execution
| Package(s): | libvorbis |
CVE #(s): | CVE-2012-0444
|
| Created: | February 16, 2012 |
Updated: | April 3, 2012 |
| Description: |
From the Red Hat advisory:
A heap-based buffer overflow flaw was found in the way the libvorbis
library parsed Ogg Vorbis media files. If a specially-crafted Ogg Vorbis
media file was opened by an application using libvorbis, it could cause the
application to crash or, possibly, execute arbitrary code with the
privileges of the user running the application. (CVE-2012-0444) |
| Alerts: |
|
( Log in to post comments)
|
|
|