Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2023:4251-1

Опубликовано: 30 окт. 2023
Источник: suse-cvrf

Описание

Security update for vorbis-tools

This update for vorbis-tools fixes the following issues:

  • CVE-2023-43361: Fixed a buffer overflow vulnerability during the conversion of wav files to ogg files. (bsc#1215942)

Список пакетов

SUSE Enterprise Storage 7.1
vorbis-tools-1.4.0-150000.3.3.1
vorbis-tools-lang-1.4.0-150000.3.3.1
SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS
vorbis-tools-1.4.0-150000.3.3.1
vorbis-tools-lang-1.4.0-150000.3.3.1
SUSE Linux Enterprise High Performance Computing 15 SP2-LTSS
vorbis-tools-1.4.0-150000.3.3.1
vorbis-tools-lang-1.4.0-150000.3.3.1
SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS
vorbis-tools-1.4.0-150000.3.3.1
vorbis-tools-lang-1.4.0-150000.3.3.1
SUSE Linux Enterprise High Performance Computing 15 SP3-LTSS
vorbis-tools-1.4.0-150000.3.3.1
vorbis-tools-lang-1.4.0-150000.3.3.1
SUSE Linux Enterprise Module for Desktop Applications 15 SP4
vorbis-tools-1.4.0-150000.3.3.1
vorbis-tools-lang-1.4.0-150000.3.3.1
SUSE Linux Enterprise Module for Desktop Applications 15 SP5
vorbis-tools-1.4.0-150000.3.3.1
vorbis-tools-lang-1.4.0-150000.3.3.1
SUSE Linux Enterprise Server 15 SP1-LTSS
vorbis-tools-1.4.0-150000.3.3.1
vorbis-tools-lang-1.4.0-150000.3.3.1
SUSE Linux Enterprise Server 15 SP2-LTSS
vorbis-tools-1.4.0-150000.3.3.1
vorbis-tools-lang-1.4.0-150000.3.3.1
SUSE Linux Enterprise Server 15 SP3-LTSS
vorbis-tools-1.4.0-150000.3.3.1
vorbis-tools-lang-1.4.0-150000.3.3.1
SUSE Linux Enterprise Server for SAP Applications 15 SP1
vorbis-tools-1.4.0-150000.3.3.1
vorbis-tools-lang-1.4.0-150000.3.3.1
SUSE Linux Enterprise Server for SAP Applications 15 SP2
vorbis-tools-1.4.0-150000.3.3.1
vorbis-tools-lang-1.4.0-150000.3.3.1
SUSE Linux Enterprise Server for SAP Applications 15 SP3
vorbis-tools-1.4.0-150000.3.3.1
vorbis-tools-lang-1.4.0-150000.3.3.1
openSUSE Leap 15.4
vorbis-tools-1.4.0-150000.3.3.1
vorbis-tools-lang-1.4.0-150000.3.3.1
openSUSE Leap 15.5
vorbis-tools-1.4.0-150000.3.3.1
vorbis-tools-lang-1.4.0-150000.3.3.1

Описание

Buffer Overflow vulnerability in Vorbis-tools v.1.4.2 allows a local attacker to execute arbitrary code and cause a denial of service during the conversion of wav files to ogg files.


Затронутые продукты
SUSE Enterprise Storage 7.1:vorbis-tools-1.4.0-150000.3.3.1
SUSE Enterprise Storage 7.1:vorbis-tools-lang-1.4.0-150000.3.3.1
SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:vorbis-tools-1.4.0-150000.3.3.1
SUSE Linux Enterprise High Performance Computing 15 SP1-LTSS:vorbis-tools-lang-1.4.0-150000.3.3.1

Ссылки