Alerts This Week
Warning Icon 1 640
Alerts This Week
Warning Icon 1 640

Ubuntu 16.04 LTS: USN-4499-1 Critical: MilkyTracker Crash Risk

ubuntu
Calendar Grey September 15, 2020
Dist Ubuntu Esm H88
Ubuntu Security Advisory USN-4500-1 addresses vulnerabilities in MilkyTracker, highlighting associated threats and providing recommendations for updates.
MilkyTracker could be made to crash or run programs as your login if it opened a specially crafted file.

Summary

MilkyTracker could be made to crash or run programs as your login if it

opened a specially crafted file.

Software Description:

- milkytracker: music creation tool inspired by Fast Tracker 2

Details:

It was discovered that MilkyTracker did not properly handle certain input. If

a user were tricked into opening a malicious file, an attacker could cause

MilkyTracker to crash or potentially execute arbitrary code.

Update Instructions

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 16.04 LTS:
  milkytracker                    0.90.85+dfsg-2.2+deb8u1build0.16.04.1

In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-4499-1

CVE-2019-14464, CVE-2019-14496, CVE-2019-14497

Severity
critical
Lowest
Low
Medium
High
Critical

September 15, 2020

Package Information

--
ubuntu-security-announce mailing list
ubuntu-security-announce@lists.ubuntu.com
Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-security-announce

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here