Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 501
Alerts This Week
Warning Icon 1 501

Gentoo: GLSA-200503-21 Alert: Grip CDDB Overflow Vulnerability Risk

gentoo
Calendar Grey March 17, 2005
Scroller Gentoo
Gentoo Linux Security Advisory GLSA 202303-18 discusses a vulnerability in Pidgin that may enable unauthorized access to sensitive information.
Grip contains a buffer overflow that can be triggered by a large CDDB response, potentially allowing the execution of arbitrary code.

Summary

Gentoo Linux Security Advisory GLSA 200503-21 https://security.gentoo.org/ Severity: Normal Title: Grip: CDDB response overflow Date: March 17, 2005 Bugs: #84704 ID: 200503-21

Synopsis ======= Grip contains a buffer overflow that can be triggered by a large CDDB response, potentially allowing the execution of arbitrary code.
Background ========= Grip is a GTK+ based audio CD player/ripper.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 media-sound/grip < 3.3.0 >= 3.3.0
========== Joseph VanAndel has discovered a buffer overflow in Grip when processing large CDDB results.
Impact ===== A malicious CDDB server could cause Grip to crash by returning more t...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround