|
|
Log in / Subscribe / Register

libvorbis: code execution

Package(s):libvorbis CVE #(s):CVE-2012-0444
Created:February 16, 2012 Updated:April 3, 2012
Description:

From the Red Hat advisory:

A heap-based buffer overflow flaw was found in the way the libvorbis library parsed Ogg Vorbis media files. If a specially-crafted Ogg Vorbis media file was opened by an application using libvorbis, it could cause the application to crash or, possibly, execute arbitrary code with the privileges of the user running the application. (CVE-2012-0444)

Alerts:
openSUSE openSUSE-SU-2014:1100-1 Firefox 2014-09-09
Gentoo 201301-01 firefox 2013-01-07
Mandriva MDVSA-2012:052 libvorbis 2012-04-03
Mandriva MDVSA-2012:051 libvorbis 2012-04-03
SUSE SUSE-SU-2012:0326-1 libvorbis 2012-03-06
openSUSE openSUSE-SU-2012:0319-1 libvorbis 2012-03-01
Ubuntu USN-1370-1 libvorbis 2012-02-20
Ubuntu USN-1369-1 thunderbird 2012-02-17
Debian DSA-2412-1 libvorbis 2012-02-19
Fedora FEDORA-2012-1652 libvorbis 2012-02-17
Oracle ELSA-2012-0136 libvorbis 2012-02-15
Oracle ELSA-2012-0136 libvorbis 2012-02-15
Oracle ELSA-2012-0136 libvorbis 2012-02-15

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds