Alerts This Week
Warning Icon 1 631
Alerts This Week
Warning Icon 1 631

Critical Heap Overflow Advisory for Fedora 23 - CVE-2015-7805 Risk

fedora
Calendar Grey December 20, 2015
Dist Fedora Esm H88
This Debian upgrade resolves a significant integer overflow in libxml2 that may leverage specifically designed XML documents.
fix CVE-2015-7805 libsndfile: Heap overflow vulnerability when parsing specially crafted AIFF header

Summary

libsndfile is a C library for reading and writing sound files such as

AIFF, AU, WAV, and others through one standard interface. It can

currently read/write 8, 16, 24 and 32-bit PCM files as well as 32 and

64-bit floating point WAV files and a number of compressed formats. It

compiles and runs on *nix, MacOS, and Win32.

Update Information:

fix CVE-2015-7805 libsndfile: Heap overflow vulnerability when parsing specially crafted AIFF header

Change Log

References


[ 1 ] Bug #1277915 - CVE-2015-8075 libsndfile: Out of bounds memory access in psf_strlcpy_crlf https://bugzilla.redhat.com/show_bug.cgi?id=1277915

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update libsndfile' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
critical
Lowest
Low
Medium
High
Critical

Name: libsndfile
Product: Fedora 23
Version: 1.0.25
Release: 18.fc23
Summary: Library for reading and writing sound files

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here