Package: grip
Severity: grave
Tags: security patch

  Buffer overflow in discdb.c for grip 3.1.2 allows attackers to cause a
  denial of service (crash) and possibly execute arbitrary code by causing
  the cddb lookup to return more matches than expected.

Also affects 3.3.0. For details:

http://sourceforge.net/tracker/index.php?func=detail&aid=834724&group_id=3714&atid=103714

The patch here applies to the debian version:

http://sourceforge.net/tracker/index.php?func=detail&aid=1160134&group_id=3714&atid=303714

-- 
see shy jo

Attachment: signature.asc
Description: Digital signature

Reply via email to