Bug#884237: aubio: CVE-2017-17554

2017-12-14 Thread Salvatore Bonaccorso
Hi Paul! On Wed, Dec 13, 2017 at 10:26:07AM -0500, Paul Brossier wrote: > Hello Salvatore, > > thank you for the report. I am preparing a patch for this and will > submit an updated package asap. > > See also https://github.com/aubio/aubio/issues/137 Thank you! I think all of thiese now found

Bug#884237: aubio: CVE-2017-17554

2017-12-13 Thread Paul Brossier
Hello Salvatore, thank you for the report. I am preparing a patch for this and will submit an updated package asap. See also https://github.com/aubio/aubio/issues/137 best, piem On 12/12/2017 03:31 PM, Salvatore Bonaccorso wrote: > Source: aubio > Version: 0.4.5-1 > Severity: important > Tags:

Bug#884237: aubio: CVE-2017-17554

2017-12-12 Thread Salvatore Bonaccorso
Source: aubio Version: 0.4.5-1 Severity: important Tags: security upstream Hi, the following vulnerability was published for aubio. CVE-2017-17554[0]: | A NULL pointer dereference (DoS) Vulnerability was found in the | function aubio_source_avcodec_readframe in io/source_avcodec.c of aubio | 0.4