Описание
Security update for vorbis-tools
This update for vorbis-tools fixes the following issues:
Changes in vorbis-tools:
- CVE-2026-34253: Fix buffer underflow in the
ogg123utility in functionremotethreadofremote.c(bsc#1265361):
Список пакетов
openSUSE Leap 16.0
vorbis-tools-1.4.2-bp160.2.1
vorbis-tools-lang-1.4.2-bp160.2.1
Ссылки
- SUSE Security Ratings
- SUSE Bug 1265361
- SUSE CVE CVE-2026-34253 page
Описание
A buffer underflow vulnerability has been identified in the ogg123 utility from the vorbis-tools 1.4.3 package in function remotethread in remote.c. This vulnerability occurs in the remote control functionality when processing malformed input, leading to a stack buffer underflow that can cause application crashes and potentially allow code execution.
Затронутые продукты
openSUSE Leap 16.0:vorbis-tools-1.4.2-bp160.2.1
openSUSE Leap 16.0:vorbis-tools-lang-1.4.2-bp160.2.1
Ссылки
- CVE-2026-34253
- SUSE Bug 1265361