[ubuntu/natty-security] libmodplug 1:0.8.8.1-2ubuntu0.3 (Accepted)
Marc Deslauriers
marc.deslauriers at ubuntu.com
Wed Nov 9 15:03:27 UTC 2011
libmodplug (1:0.8.8.1-2ubuntu0.3) natty-security; urgency=low
* SECURITY UPDATE: integer overflow in CSoundFile::ReadWav()
- properly calculate length in src/load_wav.cpp.
- http://modplug-xmms.git.sourceforge.net/git/gitweb.cgi?p=modplug-xmms/modplug-xmms;a=commit;h=2d4c56de314ab13e4437bd8b609f0b751066eee8
- CVE-2011-2911
* SECURITY UPDATE: boundary error in CSoundFile::ReadS3M()
- validate offsets and ignore duplicate samples in src/load_s3m.cpp.
- http://modplug-xmms.git.sourceforge.net/git/gitweb.cgi?p=modplug-xmms/modplug-xmms;a=commit;h=4e5295658fff000379caa122e75c9200205fe20
- CVE-2011-2912
* SECURITY UPDATE: off-by-one in CSoundFile::ReadAMS()
- fix calculation in src/load_ams.cpp.
- http://modplug-xmms.git.sourceforge.net/git/gitweb.cgi?p=modplug-xmms/modplug-xmms;a=commit;h=26243ab9fe1171f70053e9aec4b20e9f7de9e4ef
- CVE-2011-2913
* SECURITY UPDATE: off-by-one in CSoundFile::ReadDSM()
- fix calculation in src/load_dsm.cpp.
- http://modplug-xmms.git.sourceforge.net/git/gitweb.cgi?p=modplug-xmms/modplug-xmms;a=commit;h=26243ab9fe1171f70053e9aec4b20e9f7de9e4ef
- CVE-2011-2914
* SECURITY UPDATE: off-by-one in CSoundFile::ReadAMS2()
- fix calculation in src/load_ams.cpp.
- http://modplug-xmms.git.sourceforge.net/git/gitweb.cgi?p=modplug-xmms/modplug-xmms;a=commit;h=16d7a78efe14d345a6c5b241f88422ad0ee483ea
- CVE-2011-2915
Date: Fri, 14 Oct 2011 13:42:09 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/natty/+source/libmodplug/1:0.8.8.1-2ubuntu0.3
-------------- next part --------------
Format: 1.8
Date: Fri, 14 Oct 2011 13:42:09 -0400
Source: libmodplug
Binary: libmodplug1 libmodplug-dev
Architecture: source
Version: 1:0.8.8.1-2ubuntu0.3
Distribution: natty-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
libmodplug-dev - development files for mod music based on ModPlug
libmodplug1 - shared libraries for mod music based on ModPlug
Changes:
libmodplug (1:0.8.8.1-2ubuntu0.3) natty-security; urgency=low
.
* SECURITY UPDATE: integer overflow in CSoundFile::ReadWav()
- properly calculate length in src/load_wav.cpp.
- http://modplug-xmms.git.sourceforge.net/git/gitweb.cgi?p=modplug-xmms/modplug-xmms;a=commit;h=2d4c56de314ab13e4437bd8b609f0b751066eee8
- CVE-2011-2911
* SECURITY UPDATE: boundary error in CSoundFile::ReadS3M()
- validate offsets and ignore duplicate samples in src/load_s3m.cpp.
- http://modplug-xmms.git.sourceforge.net/git/gitweb.cgi?p=modplug-xmms/modplug-xmms;a=commit;h=4e5295658fff000379caa122e75c9200205fe20
- CVE-2011-2912
* SECURITY UPDATE: off-by-one in CSoundFile::ReadAMS()
- fix calculation in src/load_ams.cpp.
- http://modplug-xmms.git.sourceforge.net/git/gitweb.cgi?p=modplug-xmms/modplug-xmms;a=commit;h=26243ab9fe1171f70053e9aec4b20e9f7de9e4ef
- CVE-2011-2913
* SECURITY UPDATE: off-by-one in CSoundFile::ReadDSM()
- fix calculation in src/load_dsm.cpp.
- http://modplug-xmms.git.sourceforge.net/git/gitweb.cgi?p=modplug-xmms/modplug-xmms;a=commit;h=26243ab9fe1171f70053e9aec4b20e9f7de9e4ef
- CVE-2011-2914
* SECURITY UPDATE: off-by-one in CSoundFile::ReadAMS2()
- fix calculation in src/load_ams.cpp.
- http://modplug-xmms.git.sourceforge.net/git/gitweb.cgi?p=modplug-xmms/modplug-xmms;a=commit;h=16d7a78efe14d345a6c5b241f88422ad0ee483ea
- CVE-2011-2915
Checksums-Sha1:
da2da14f97be519f5abfa991cf30c2a8d8703b97 1801 libmodplug_0.8.8.1-2ubuntu0.3.dsc
469cbdb31b3dffd925175fb1ccff12ceeb9ed37a 15114 libmodplug_0.8.8.1-2ubuntu0.3.diff.gz
Checksums-Sha256:
d2726aa90f7aa4e48ff3b532088a77e46d03383fc856aefb0b501a6285b96803 1801 libmodplug_0.8.8.1-2ubuntu0.3.dsc
a0153dde4e9b70658a0d1bb5843fdb05542b8819476433b793c510ed74158a97 15114 libmodplug_0.8.8.1-2ubuntu0.3.diff.gz
Files:
2224b4e874407c53e5a65ef69700c2af 1801 libs optional libmodplug_0.8.8.1-2ubuntu0.3.dsc
f1b9fb697192e7a6e9a0fe2a780a4c46 15114 libs optional libmodplug_0.8.8.1-2ubuntu0.3.diff.gz
Original-Maintainer: Zed Pobre <zed at debian.org>
More information about the Natty-changes
mailing list