Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 507
Alerts This Week
Warning Icon 1 507

Gentoo: GLSA-202308-15 Normal: libquicktime Stack Overflow Exploit

gentoo
Calendar Grey September 16, 2004
Scroller Gentoo
Gentoo Linux Security Advisory GLSA 200512-15 details a vulnerability in vim that could lead to unauthorized access.
mpg123 decoding routines contain a buffer overflow bug that might lead to arbitrary code execution.

Summary

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Gentoo Linux Security Advisory                           GLSA 200409-20
                                            https://security.gentoo.org/

Severity: Normal Title: mpg123: Buffer overflow vulnerability Date: September 16, 2004 Bugs: #63079 ID: 200409-20

Synopsis ======= mpg123 decoding routines contain a buffer overflow bug that might lead to arbitrary code execution.
Background ========= mpg123 is a MPEG Audio Player.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 media-sound/mpg123 <= 0.59s-r3 >= 0.59s-r4
========== mpg123 contains a buffer overflow in the code that handles layer2 decoding of media files.
Impact ===== An attacker can possibly exploit this bug with a specially-crafted mp3 or mp2 file to execu...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround