Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Ubuntu: 4013-1 Moderate: Libsndfile DoS and Code Execution Risks

Ubuntu Large Esm H500
Several security issues were fixed in libsndfile.
=========================================================================Ubuntu Security Notice USN-4013-1
June 10, 2019

libsndfile vulnerabilities
=========================================================================
A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 18.10
- Ubuntu 18.04 LTS
- Ubuntu 16.04 LTS

Summary:

Several security issues were fixed in libsndfile.

Software Description:
- libsndfile: Library for reading/writing audio files

Details:

It was discovered that libsndfile incorrectly handled certain malformed
files. A remote attacker could use this issue to cause libsndfile to crash,
resulting in a denial of service, or possibly execute arbitrary code.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 18.10:
  libsndfile1                     1.0.28-4ubuntu0.18.10.1

Ubuntu 18.04 LTS:
  libsndfile1                     1.0.28-4ubuntu0.18.04.1

Ubuntu 16.04 LTS:
  libsndfile1                     1.0.25-10ubuntu0.16.04.2

After a standard system update you need to restart your session to make all
the necessary changes.

References:
  https://ubuntu.com/security/notices/USN-4013-1
  CVE-2017-14245, CVE-2017-14246, CVE-2017-14634, CVE-2017-16942,
  CVE-2017-17456, CVE-2017-17457, CVE-2017-6892, CVE-2018-13139,
  CVE-2018-19432, CVE-2018-19661, CVE-2018-19662, CVE-2018-19758,
  CVE-2019-3832

Package Information:
  https://launchpad.net/ubuntu/+source/libsndfile/1.0.28-4ubuntu0.18.10.1
  https://launchpad.net/ubuntu/+source/libsndfile/1.0.28-4ubuntu0.18.04.1
  https://launchpad.net/ubuntu/+source/libsndfile/1.0.25-10ubuntu0.16.04.2

Ubuntu: 4013-1 Moderate: Libsndfile DoS and Code Execution Risks

ubuntu
Calendar Grey June 10, 2019
Dist Ubuntu Esm H88
Ubuntu Security Announcement USN-4014-1 discusses vulnerabilities in libjpeg that impact various versions and suggests necessary upgrades.
Several security issues were fixed in libsndfile.

Summary

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 18.10: libsndfile1 1.0.28-4ubuntu0.18.10.1 Ubuntu 18.04 LTS: libsndfile1 1.0.28-4ubuntu0.18.04.1 Ubuntu 16.04 LTS: libsndfile1 1.0.25-10ubuntu0.16.04.2 After a standard system update you need to restart your session to make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-4013-1

CVE-2017-14245, CVE-2017-14246, CVE-2017-14634, CVE-2017-16942,

CVE-2017-17456, CVE-2017-17457, CVE-2017-6892, CVE-2018-13139,

CVE-2018-19432, CVE-2018-19661, CVE-2018-19662, CVE-2018-19758,

CVE-2019-3832

June 10, 2019

Package Information

https://launchpad.net/ubuntu/+source/libsndfile/1.0.28-4ubuntu0.18.10.1 https://launchpad.net/ubuntu/+source/libsndfile/1.0.28-4ubuntu0.18.04.1 https://launchpad.net/ubuntu/+source/libsndfile/1.0.25-10ubuntu0.16.04.2

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here