Grip contains a buffer overflow that can be triggered by a large CDDB response, potentially allowing the execution of arbitrary code.. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200503-21 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - https://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Severity: Normal Title: Grip: CDDB response overflow Date: March 17, 2005 Bugs: #84704 ID: 200503-21 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Synopsis ======= Grip contains a buffer overflow that can be triggered by a large CDDB response, potentially allowing the execution of arbitrary code. Background ========= Grip is a GTK+ based audio CD player/ripper. Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 media-sound/grip < 3.3.0 > = 3.3.0 Description ========== Joseph VanAndel has discovered a buffer overflow in Grip when processing large CDDB results. Impact ===== A malicious CDDB server could cause Grip to crash by returning more then 16 matches, potentially allowing the execution of arbitrary code with the privileges of the user running the application. Workaround ========= Disable automatic CDDB queries, but we highly encourage users to upgrade to 3.3.0. Resolution ========= All Grip users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose "> =media-sound/grip-3.3.0" References ========= [ 1 ] CAN-2005-0706 https://www.cve.org/CVERecord?id=CVE-CAN-2005-0706 [ 2 ] Original Bug Report https://sourceforge.net/projects/grip/;atid=103714&func=detail&aid=834724 Availability =========== This GLSA and any updates to it are available for viewing at the Gentoo Security Website: https://security.gentoo.org/glsa/200503-21 Concerns? ======== Security is a primary focus of Gentoo Linux and ensuring the confidentiality and security of our users machines is of utmost importance to us. Any security concerns should be addressed to
This fixes a buffer overflow when the CDDB server returns more than 16 matches.. ---------------------------------------------------------------------Fedora Update Notification FEDORA-2005-202 2005-03-09 ---------------------------------------------------------------------Product : Fedora Core 2 Name : grip Version : 3.2.0 Release : 3.fc2 Summary : A front-end for CD rippers and Ogg Vorbis encoders. Description : Grip is a GTK+ based front-end for CD rippers (such as cdparanoia and cdda2wav) and Ogg Vorbis encoders. Grip allows you to rip entire tracks or just a section of a track. Grip supports the CDDB protocol for accessing track information on disc database servers. ---------------------------------------------------------------------Update Information: This fixes a buffer overflow when the CDDB server returns more than 16 matches. ---------------------------------------------------------------------* Wed Mar 9 2005 Bill Nottingham 3.2.0-3.fc2 - add patch to fix overflow when there are too many CDDB matches * Fri Oct 8 2004 Bill Nottingham 3.2.0-3 - add a passel of buildreqs (#135045) * Wed Jul 28 2004 Adrian Havill 3.2.0-2 - rebuilt - add vte-devel to BuildRequires * Sun Jun 20 2004 Karsten Hopp 3.2.0-1 - update to latest stable version - remove obsolete locking and cdparanoia patches * Tue Jun 15 2004 Elliot Lee - rebuilt ---------------------------------------------------------------------This update can be downloaded from: c5c34b3b3b297be7ece95e59dc7c31ce SRPMS/grip-3.2.0-3.fc2.src.rpm 668467205016befb3793a75557a92878 x86_64/grip-3.2.0-3.fc2.x86_64.rpm 79927efa8e6eb9c877f5c933951e1ca2 x86_64/debug/grip-debuginfo-3.2.0-3.fc2.x86_64.rpm 57f3ffa668a0283b27e43255d20ae6d4 i386/grip-3.2.0-3.fc2.i386.rpm 3dbd12ec9d02d4f4b5a7d5bfe68a89bc i386/debug/grip-debuginfo-3.2.0-3.fc2.i386.rpm This update can also be installed with the Update Agent; you can launch theUpdate Agent with the 'up2date' command. -----------------------------------------------------------------------fedora-announce-list mailing list
Get the latest Linux and open source security news straight to your inbox.