Explore top 10 tips to secure your open-source projects now. Read More

×
Alerts This Week
Warning Icon 1 615
Alerts This Week
Warning Icon 1 615

Gentoo: GLSA-200503-34 Normal: mpg321 Format String Code Execution Risk

gentoo
Calendar Grey March 28, 2005
Scroller Gentoo
Arbitrary code execution vulnerability found in mpg321 on Gentoo, linked to a format string flaw. Users are advised to update immediately.
A flaw in the processing of ID3 tags in mpg321 could potentially lead to the execution of arbitrary code.

Summary

Gentoo Linux Security Advisory GLSA 200503-34 https://security.gentoo.org/ Severity: Normal Title: mpg321: Format string vulnerability Date: March 28, 2005 Bugs: #86033 ID: 200503-34

Synopsis ======= A flaw in the processing of ID3 tags in mpg321 could potentially lead to the execution of arbitrary code.
Background ========= mpg321 is a GPL replacement for mpg123, a command line audio player with support for ID3. ID3 is a tagging system that allows metadata to be embedded within media files.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 media-sound/mpg321 < 0.2.10-r2 >= 0.2.10-r2
========== A routine security audit of the mpg321 package revealed a known securit...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround