[ubuntu/natty-security] libsndfile 1.0.23-1ubuntu0.1 (Accepted)
Jamie Strandboge
jamie at ubuntu.com
Mon Jul 25 23:03:33 UTC 2011
libsndfile (1.0.23-1ubuntu0.1) natty-security; urgency=low
* SECURITY UPDATE: integer overflow leading to heap-based overflow
- debian/CVE-2011-2696.patch: verify paf header length and paf channels
- CVE-2011-2696
Date: Thu, 21 Jul 2011 15:32:10 -0500
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/natty/+source/libsndfile/1.0.23-1ubuntu0.1
-------------- next part --------------
Format: 1.8
Date: Thu, 21 Jul 2011 15:32:10 -0500
Source: libsndfile
Binary: libsndfile1-dev libsndfile1 sndfile-programs
Architecture: source
Version: 1.0.23-1ubuntu0.1
Distribution: natty-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Jamie Strandboge <jamie at ubuntu.com>
Description:
libsndfile1 - Library for reading/writing audio files
libsndfile1-dev - Development files for libsndfile; a library for reading/writing a
sndfile-programs - Sample programs that use libsndfile
Changes:
libsndfile (1.0.23-1ubuntu0.1) natty-security; urgency=low
.
* SECURITY UPDATE: integer overflow leading to heap-based overflow
- debian/CVE-2011-2696.patch: verify paf header length and paf channels
- CVE-2011-2696
Checksums-Sha1:
85da8147d32537db81f4a0b6259bb2b9f58ed3ea 2002 libsndfile_1.0.23-1ubuntu0.1.dsc
7567e3ec32020c5f6bce9302f5b8685795e66860 10392 libsndfile_1.0.23-1ubuntu0.1.debian.tar.gz
Checksums-Sha256:
edab4d223a650514a6d0d8f334040671c2289adac9acc3b5a33b3fcf177c2907 2002 libsndfile_1.0.23-1ubuntu0.1.dsc
fc07d83269266e83fc8870997e719dc0d30e7758beaeec390b9e6895f05107ed 10392 libsndfile_1.0.23-1ubuntu0.1.debian.tar.gz
Files:
b2dc7cb91fda6d3f36d158629f333ee5 2002 devel optional libsndfile_1.0.23-1ubuntu0.1.dsc
6fdeb6512a6542faf5b28ad97e4fbaf9 10392 devel optional libsndfile_1.0.23-1ubuntu0.1.debian.tar.gz
Original-Maintainer: Erik de Castro Lopo <erikd at mega-nerd.com>
More information about the Natty-changes
mailing list