Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2017:3016-1

Опубликовано: 15 нояб. 2017
Источник: suse-cvrf

Описание

Security update for snack

This update for snack fixes the following issues:

Security issue fixed:

  • CVE-2012-6303: Heap-based buffer overflow in the GetWavHeader function in generic/jkSoundFile.c in the Snack Sound Toolkit, as used in WaveSurfer 1.8.8p4, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large chunk size in a WAV file. (bnc#793860)

Список пакетов

openSUSE Leap 42.2
snack-2.2.10-220.1
openSUSE Leap 42.3
snack-2.2.10-220.1

Описание

Heap-based buffer overflow in the GetWavHeader function in generic/jkSoundFile.c in the Snack Sound Toolkit, as used in WaveSurfer 1.8.8p4, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large chunk size in a WAV file.


Затронутые продукты
openSUSE Leap 42.2:snack-2.2.10-220.1
openSUSE Leap 42.3:snack-2.2.10-220.1

Ссылки