Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Ubuntu 16.04 ESM USN-5749-1 Moderate: Libsamplerate Crash Threat

Ubuntu Large Esm H500
libsamplerate could cause a crash if it processed a specially crafted audio file.
=========================================================================Ubuntu Security Notice USN-5749-1
November 29, 2022

libsamplerate vulnerability
=========================================================================
A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 16.04 ESM

Summary:

libsamplerate could cause a crash if it processed a specially crafted
audio file.

Software Description:
- libsamplerate: Audio sample rate conversion library

Details:

Erik de Castro Lopo and Agostino Sarubbo discovered that libsamplerate
did not properly perform bounds checking. If a user were tricked into
processing a specially crafted audio file, an attacker could possibly
use this issue to cause a crash.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 16.04 ESM:
   libsamplerate0                  0.1.8-8ubuntu0.1~esm1

In general, a standard system update will make all the necessary changes.

References:
   https://ubuntu.com/security/notices/USN-5749-1
   CVE-2017-7697

Ubuntu 16.04 ESM USN-5749-1 Moderate: Libsamplerate Crash Threat

ubuntu
Calendar Grey November 29, 2022
Dist Ubuntu Esm H88
Ensure your Ubuntu installation is updated to resolve vulnerabilities related to libsamplerate, which may result in system instability when processing specially designed audio files.
libsamplerate could cause a crash if it processed a specially crafted audio file.

Summary

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 16.04 ESM: libsamplerate0 0.1.8-8ubuntu0.1~esm1 In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-5749-1

CVE-2017-7697

November 29, 2022

Package Information

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here