USN-580-1: libcdio vulnerability


 
Thread Tools Search this Thread
Special Forums Cybersecurity Security Advisories (RSS) USN-580-1: libcdio vulnerability
# 1  
Old 02-21-2008
USN-580-1: libcdio vulnerability

Referenced CVEs:
CVE-2007-6613


Description:
=========================================================== Ubuntu Security Notice USN-580-1 February 20, 2008libcdio vulnerabilityCVE-2007-6613===========================================================A security issue affects the following Ubuntu releases:Ubuntu 6.06 LTSUbuntu 6.10Ubuntu 7.04Ubuntu 7.10This advisory also applies to the corresponding versions ofKubuntu, Edubuntu, and Xubuntu.The problem can be corrected by upgrading your system to thefollowing package versions:Ubuntu 6.06 LTS: libcdio6 0.76-1ubuntu1.6.06.1Ubuntu 6.10: libcdio6 0.76-1ubuntu1.6.10.1Ubuntu 7.04: libcdio6 0.76-1ubuntu2.7.04.1Ubuntu 7.10: libcdio6 0.76-1ubuntu2.7.10.1In general, a standard system upgrade is sufficient to effect thenecessary changes.Details follow:Devon Miller discovered that the iso-info and cd-info tools did notproperly perform bounds checking. If a user were tricked into usingthese tools with a crafted iso image, an attacker could cause adenial of service via a core dump, and possibly execute arbitrarycode.





More...
Login or Register to Ask a Question

Previous Thread | Next Thread
Login or Register to Ask a Question
perlmmc(3pm)						User Contributed Perl Documentation					      perlmmc(3pm)

NAME
perlmmc - lower-level wrapper to MMC from libcdio, the ISO 9660 library of the CD Input and Control package SYNOPSIS
This is fairly straight-forward wrapper around the MultiMedia commands from the C library libcdio. Although this is perfectly usable on its own, it is expected that the interfaces Device::Cdio::MMC or Device::Cdio::Device::MMC is what most people will want to use. There are various constants that are defined here. METHODS
this This seems to be an artifact of SWIG. SEE ALSO
<http://www.gnu.org/software/libcdio> has documentation on libcdio including the a manual and the API via doxygen. AUTHORS
Rocky Bernstein "<rocky at cpan.org>". COPYRIGHT
Copyright (C) 2006, 2008, 2011 Rocky Bernstein <rocky@cpan.org> This program is free software: you can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation, either version 3 of the License, or (at your option) any later version. This program is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for more details. You should have received a copy of the GNU General Public License along with this program. If not, see <http://www.gnu.org/licenses/>. perl v5.14.2 2012-06-22 perlmmc(3pm)