Описание
Security update for flac
This update for flac fixes the following issues:
- CVE-2017-6888: An error in the 'read_metadata_vorbiscomment_()' function could be exploited to cause a memory leak via a specially crafted FLAC file (bsc#1091045).
Список пакетов
Container containers/milvus:2.4
libFLAC8-1.3.2-3.3.20
Container containers/open-webui:0
libFLAC8-1.3.2-3.3.20
Container suse/kiosk/firefox-esr:esr
libFLAC8-1.3.2-3.3.20
Container suse/kiosk/firefox-esr:latest
libFLAC8-1.3.2-3.3.20
Container suse/kiosk/pulseaudio:17
libFLAC8-1.3.2-3.3.20
Container suse/kiosk/pulseaudio:latest
libFLAC8-1.3.2-3.3.20
Container suse/kiosk/xorg-client:latest
libFLAC8-1.3.2-3.3.20
Image SLES15-SP4-SAP-Azure-LI-BYOS
libFLAC8-1.3.2-3.3.20
Image SLES15-SP4-SAP-Azure-LI-BYOS-Production
libFLAC8-1.3.2-3.3.20
Image SLES15-SP4-SAP-Azure-VLI-BYOS
libFLAC8-1.3.2-3.3.20
Image SLES15-SP4-SAP-Azure-VLI-BYOS-Production
libFLAC8-1.3.2-3.3.20
Image SLES15-SP5-SAP-Azure-LI-BYOS
libFLAC8-1.3.2-3.3.20
Image SLES15-SP5-SAP-Azure-LI-BYOS-Production
libFLAC8-1.3.2-3.3.20
Image SLES15-SP5-SAP-Azure-VLI-BYOS
libFLAC8-1.3.2-3.3.20
Image SLES15-SP5-SAP-Azure-VLI-BYOS-Production
libFLAC8-1.3.2-3.3.20
Image SLES15-SP6-SAP-Azure-LI-BYOS
libFLAC8-1.3.2-3.3.20
Image SLES15-SP6-SAP-Azure-LI-BYOS-Production
libFLAC8-1.3.2-3.3.20
Image SLES15-SP6-SAP-Azure-VLI-BYOS
libFLAC8-1.3.2-3.3.20
Image SLES15-SP6-SAP-Azure-VLI-BYOS-Production
libFLAC8-1.3.2-3.3.20
Image SLES15-SP7-SAP-Azure-LI-BYOS-Production
libFLAC8-1.3.2-3.3.20
Image SLES15-SP7-SAP-Azure-VLI-BYOS-Production
libFLAC8-1.3.2-3.3.20
SUSE Linux Enterprise Module for Basesystem 15
flac-devel-1.3.2-3.3.20
libFLAC++6-1.3.2-3.3.20
libFLAC8-1.3.2-3.3.20
Ссылки
- Link for SUSE-SU-2019:0920-1
- E-Mail link for SUSE-SU-2019:0920-1
- SUSE Security Ratings
- SUSE Bug 1091045
- SUSE CVE CVE-2017-6888 page
Описание
An error in the "read_metadata_vorbiscomment_()" function (src/libFLAC/stream_decoder.c) in FLAC version 1.3.2 can be exploited to cause a memory leak via a specially crafted FLAC file.
Затронутые продукты
Container containers/milvus:2.4:libFLAC8-1.3.2-3.3.20
Container containers/open-webui:0:libFLAC8-1.3.2-3.3.20
Container suse/kiosk/firefox-esr:esr:libFLAC8-1.3.2-3.3.20
Container suse/kiosk/firefox-esr:latest:libFLAC8-1.3.2-3.3.20
Ссылки
- CVE-2017-6888
- SUSE Bug 1091045