Opened 3 years ago
Last modified 3 years ago
#14852 closed enhancement
flac security fix — at Initial Version
Reported by: | Owned by: | blfs-book | |
---|---|---|---|
Priority: | normal | Milestone: | 11.0 |
Component: | BOOK | Version: | SVN |
Severity: | normal | Keywords: | |
Cc: |
Description
In FLACbitreader_read_rice_signed_block of bitreader.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.
Fixed upstream but no new release.
CVE-2020-0490
Note:
See TracTickets
for help on using tickets.