Opened 20 years ago

Closed 20 years ago

Last modified 11 years ago

#1450 closed defect (fixed)

Mpg123 Security Vulnerability

Reported by: Randy McMurchy Owned by: djensen@…
Priority: highest Milestone:
Component: BOOK Version: SVN
Severity: critical Keywords:
Cc:

Description

The maintainer's site for the Mpg123 package says that you should *not* use the source code we show in the BLFS book.

There may be a fix (patches) on the Debian or Gentoo sites, though I did not check into this.

For the time being we need to decide if perhaps commenting out this package from the multimedia section in BLFS might not be the best plan.

Change History (5)

comment:1 by djensen@…, 20 years ago

Owner: changed from blfs-book@… to djensen@…

comment:2 by djensen@…, 20 years ago

Status: newassigned

I will fix this for now because I still like gqmpeg. However, it is getting a bit dated too. Maybe this should be the last update.

comment:3 by tushar@…, 20 years ago

mpg321 is a drop-in replacement for mpg123. Can be found at <http://sourceforge.net/projects/mpg321/>.

comment:4 by djensen@…, 20 years ago

Resolution: fixed
Status: assignedclosed

Mpg321 seems a bit dated too. I see it uses lib mad and libid3. I'll play with it, see how it performs. Maybe then we can discuss switching.

comment:5 by bdubbs@…, 11 years ago

Milestone: old

Milestone old deleted

Note: See TracTickets for help on using tickets.