DSA-1939 libvorbis -- several vulnerabilitiesID: oval:org.mitre.oval:def:7349 | Date: (C)2009-12-15 (M)2024-02-19 |
Class: PATCH | Family: unix |
Lucas Adamski, Matthew Gregan, David Keeler, and Dan Kaminsky discovered that libvorbis, a library for the Vorbis general-purpose compressed audio codec, did not correctly handle certain malformed ogg files. An attacher could cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted .ogg file.
Platform: |
Debian 5.0 |
Debian 4.0 |