Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Gentoo Linux Security Advisory GLSA 200412-22
https://security.gentoo.org/
Severity: Normal
Title: mpg123: Playlist buffer overflow
Date: December 21, 2004
Bugs: #74692
ID: 200412-22
Synopsis
=======
mpg123 is vulnerable to a buffer overflow that allows an attacker to
execute arbitrary code through the use of a malicious playlist.
Background
=========
mpg123 is a MPEG Audio Player.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 media-sound/mpg123 < 0.59s-r8 >= 0.59s-r8
==========
Bartlomiej Sieka discovered that mpg123 contains an unsafe strcat() to
an array in playlist.c. This code vulnerability may lead to a buffer
overflow.
Impact
=====
A remote attacker co...
style>.gentoo_availability{display:block;}
Get the latest Linux and open source security news straight to your inbox.