Bug#876779: libvorbis: CVE-2017-14632

2017-12-21 Thread Guido Günther
Hi, On Mon, Sep 25, 2017 at 09:49:33PM +0200, Salvatore Bonaccorso wrote: > Source: libvorbis > Version: 1.3.5-4 > Severity: important > Tags: security upstream > Forwarded: https://gitlab.xiph.org/xiph/vorbis/issues/2328 > > Hi, > > the following vulnerability was published for libvorbis. > > C

Bug#876779: libvorbis: CVE-2017-14632

2017-09-25 Thread Salvatore Bonaccorso
Source: libvorbis Version: 1.3.5-4 Severity: important Tags: security upstream Forwarded: https://gitlab.xiph.org/xiph/vorbis/issues/2328 Hi, the following vulnerability was published for libvorbis. CVE-2017-14633[0]: | In Xiph.Org libvorbis 1.3.5, an out-of-bounds array read vulnerability | exi