Описание
RAOP module accepts unbounded Content-Length values and does not check the pw_array_add() return.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| pipewire | fixed | 1.6.8-1 | package | |
| pipewire | no-dsa | trixie | package | |
| pipewire | postponed | bookworm | package | |
| pipewire | not-affected | bullseye | package |
Примечания
https://bugzilla.redhat.com/show_bug.cgi?id=2495903
https://gitlab.freedesktop.org/pipewire/pipewire/-/work_items/5352
Fixed by: https://gitlab.freedesktop.org/pipewire/pipewire/-/commit/87ee525b0124755ccab99d873ddf85d9d4969f73 (master)
Fixed by: https://gitlab.freedesktop.org/pipewire/pipewire/-/commit/c7fd5f935083f367d05d8f78ccbbd6e0dbc6fb07 (1.6.8)
EPSS
Связанные уязвимости
RAOP module accepts unbounded Content-Length values and does not check the pw_array_add() return.
RAOP module accepts unbounded Content-Length values and does not check the pw_array_add() return.
RAOP module accepts unbounded Content-Length values and does not check the pw_array_add() return.
RAOP module accepts unbounded Content-Length values and does not check the pw_array_add() return.
EPSS