Alerts This Week
Warning Icon 1 681
Alerts This Week
Warning Icon 1 681

Gentoo: GLSA-200608-24 Normal: AlsaPlayer Buffer Overflow Threat

gentoo
Calendar Grey August 26, 2006
Dist Gentoo Esm H88
AlsaPlayer within the Gentoo environment has been found to exhibit several buffer overflow vulnerabilities, which may lead to the execution of arbitrary code.
AlsaPlayer is vulnerable to multiple buffer overflows which could lead to the execution of arbitrary code.

Summary

Gentoo Linux Security Advisory GLSA 200608-24 https://security.gentoo.org/ Severity: Normal Title: AlsaPlayer: Multiple buffer overflows Date: August 26, 2006 Bugs: #143402 ID: 200608-24

Synopsis ======= AlsaPlayer is vulnerable to multiple buffer overflows which could lead to the execution of arbitrary code.
Background ========= AlsaPlayer is a heavily multithreaded PCM player that tries to utilize ALSA utilities and drivers. As of June 2004, the project is inactive.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 media-sound/alsaplayer <= 0.99.76-r3 Vulnerable! ------------------------------------------------------------------- NOTE: Certain packages are still vulnerable. Users should migrate to another package if one is available or wait for the existing packages to be marked stable by their architecture maintainers.
========== AlsaPlayer contains three buffer overflows: in the function that handles the HTTP connections, the GTK interface, and the CDDB queryi...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Related News

Your message here