Package: mpg123
Version: 0.61-4
Severity: important
Tags: security

It is possible mpg123 is affected by this vulnerability.

"The http_open function in httpget.c in mpg123 before 0.64 allows remote 
attackers to cause a denial of service (infinite loop) by closing the 
HTTP connection early."

http://www.mpg123.de/cgi-bin/news.cgi

Version 0.64 was released to solve this problem.

-- 
Kees Cook                                            @outflux.net


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to