Alerts This Week
Warning Icon 1 905
Alerts This Week
Warning Icon 1 905

Mageia 8 MGASA-2023-0277 Moderate: flac Buffer Overflow Risk

mageia
Calendar Grey September 30, 2023
Dist Mageia Esm H88
Mageia has released updated flac packages to mitigate buffer overflow vulnerabilities, which could enable potential remote code execution.
The updated packages fix a security vulnerability: Buffer Overflow vulnerability in function bitwriter_grow_ in flac before 1.4.0 allows remote attackers to run arbitrary code via ...

Summary

The updated packages fix a security vulnerability: Buffer Overflow vulnerability in function bitwriter_grow_ in flac before 1.4.0 allows remote attackers to run arbitrary code via crafted input to the encoder. (CVE-2020-22219)

References

- https://bugs.mageia.org/show_bug.cgi?id=32283

- https://www.cve.org/CVERecord?id=CVE-2020-22219

-

- https://www.cve.org/CVERecord?id=CVE--2020-22219

Resolution

SRPMS

- 8/core/flac-1.3.3-3.2.mga8

Publication date: 30 Sep 2023
URL: https://advisories.mageia.org/MGASA-2023-0277.html
Type: security
CVE: CVE--2020-22219

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here