Mandriva: Updated libvorbis packages fix vulnerabilities


 
Thread Tools Search this Thread
Special Forums Cybersecurity Security Advisories (RSS) Mandriva: Updated libvorbis packages fix vulnerabilities
# 1  
Old 05-16-2008
Mandriva: Updated libvorbis packages fix vulnerabilities

LinuxSecurity.com: Will Drewry of the Google Security Team reported several vulnerabilities in how libvorbis processed audio data. An attacker could create a carefuly crafted OGG audio file in such a way that it would cause an application linked to libvorbis to crash or possibly execute arbitray code when opened (CVE-2008-1419, CVE-2008-1420, CVE-2008-1423).

More...
Login or Register to Ask a Question

Previous Thread | Next Thread
Login or Register to Ask a Question