SUSE-SU-2015:1775-1
Dashboard / Vulnerabilities / SUSE-SU-2015:1775-1
SUSE-SU-2015:1775-1
Summary: Security update for vorbis-tools
Details: vorbis-tools was updated to fix several security issues. - A buffer overflow in aiff_open() that could be triggered by opening prepared malicious files (CVE-2015-6749, bsc#943795). - A division by zero and integer overflow by crafted WAV files was fixed (CVE-2014-9638, CVE-2014-9639, bnc#914439, bnc#914441).
References: https://www.suse.com/support/update/announcement/2015/suse-su-20151775-1/, https://bugzilla.suse.com/914439, https://bugzilla.suse.com/914441, https://bugzilla.suse.com/943795, https://www.suse.com/security/cve/CVE-2014-9638, https://www.suse.com/security/cve/CVE-2014-9639, https://www.suse.com/security/cve/CVE-2015-6749
Affected packages
Package
Name: vorbis-tools
Purl: pkg:rpm/suse/vorbis-tools&distro=SUSE%20Linux%20Enterprise%20Desktop%2011%20SP3
Affected ranges
Type: ECOSYSTEM
Events:
