oss-sec mailing list archives
CVE Request for libsndfile
From: Jamie Strandboge <jamie () canonical com>
Date: Thu, 14 May 2009 18:32:25 -0500
From http://www.mega-nerd.com/erikd/Blog/CodeHacking/libsndfile/: There's a new release of libsndfile available in the usual place. This is a security bug fix release which fixes a potential heap overflow in VOC files found and reported by Tobias Klein ( http://www.trapkit.de/ ) and another in the AIFF file parser found by me. 1.0.20 supposedly fixes it, with the author supplying patches back to 1.0.15. Can we get a CVE for this? Jamie -- Jamie Strandboge | http://www.canonical.com
Attachment:
signature.asc
Description: Digital signature
Current thread:
- CVE Request for libsndfile Jamie Strandboge (May 14)
- Re: CVE Request for libsndfile Robert Buchholz (May 25)
- Re: CVE Request for libsndfile Steven M. Christey (May 26)
- Re: CVE Request for libsndfile Robert Buchholz (May 25)