Gentoo Linux Security Advisory GLSA 200903-31
https://security.gentoo.org/
Severity: Normal
Title: libcdaudio: User-assisted execution of arbitrary code
Date: March 17, 2009
Bugs: #245649
ID: 200903-31
Synopsis
=======
A vulnerability in libcdaudio might allow for the remote execution of
arbitrary code.
Background
=========
libcdaudio is a library of CD audio related routines.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 media-libs/libcdaudio < 0.99.12-r1 >= 0.99.12-r1
==========
A heap-based buffer overflow has been reported in the
cddb_read_disc_data() function in cddb.c when processing overly long
CDDB data.
Impact
=====
A remote attacker could entice a user to ...
style>.gentoo_availability{display:block;}
Warning: Undefined array key "advisory_info" in /var/www/www.linuxsecurity.com-443/html/tmp/regularlabs/custom_php/4133615_4c9dbbdde36eef04251a4ced7eac4df9 on line 11
Get the latest Linux and open source security news straight to your inbox.