Download
| Alert*
oval:org.secpod.oval:def:1800915
CVE-2017-14632: Invalid freeing of uninitialized memory in the function vorbis_analysis_headerout; Xiph.Org libvorbis 1.3.5 allows Remote Code Execution upon freeing uninitialized memory in the function vorbis_analysis_headerout in info.c when vi- oval:org.secpod.oval:def:1800294 CVE-2017-14632: Invalid freeing of uninitialized memory in the function vorbis_analysis_headerout. Xiph.Org libvorbis 1.3.5 allows Remote Code Execution upon freeing uninitialized memory in the function vorbis_analysis_headerout in info.c when vi- oval:org.secpod.oval:def:1800775 CVE-2017-14632: Invalid freeing of uninitialized memory in the function vorbis_analysis_headerout Xiph.Org libvorbis 1.3.5 allows Remote Code Execution upon freeing uninitialized memory in the function vorbis_analysis_headerout in info.c when vi- oval:org.secpod.oval:def:1801535 CVE-2017-14632: Invalid freeing of uninitialized memory in the function vorbis_analysis_headerout¶ Xiph.Org libvorbis 1.3.5 allows Remote Code Execution upon freeing uninitialized memory in the function vorbis_analysis_headerout in info.c when vi- oval:org.secpod.oval:def:114884 Ogg Vorbis is a fully open, non-proprietary, patent- and royalty-free, general-purpose compressed audio format for audio and music at fixed and variable bitrates. The libvorbis package contains runtime libraries for use in programs that support Ogg Vorbis. oval:org.secpod.oval:def:603270 Two vulnerabilities were discovered in the libraries of the Vorbis audio compression codec, which could result in denial of service or the execution of arbitrary code if a malformed media file is processed. oval:org.secpod.oval:def:89002487 This update for libvorbis fixes the following issues: - CVE-2017-14633: out-of-bounds array read vulnerability exists in function mapping0_forward could lead to remote denial of service - CVE-2017-14632: Remote Code Execution upon freeing uninitialized memory in function vorbis_analysis_headerout oval:org.secpod.oval:def:89002229 This update for libvorbis fixes the following issues: - CVE-2017-14633: out-of-bounds array read vulnerability exists in function mapping0_forward could lead to remote denial of service - CVE-2017-14632: Remote Code Execution upon freeing uninitialized memory in function vorbis_analysis_headerout oval:org.secpod.oval:def:704174 libvorbis: The Vorbis General Audio Compression Codec Several security issues were fixed in libvorbis. oval:org.secpod.oval:def:53251 Two vulnerabilities were discovered in the libraries of the Vorbis audio compression codec, which could result in denial of service or the execution of arbitrary code if a malformed media file is processed. oval:org.secpod.oval:def:52066 libvorbis: The Vorbis General Audio Compression Codec Several security issues were fixed in libvorbis. |