Opened 3 years ago

Last modified 3 years ago

#14852 closed enhancement

flac security fix — at Initial Version

Reported by: ken@… Owned by: blfs-book
Priority: normal Milestone: 11.0
Component: BOOK Version: SVN
Severity: normal Keywords:
Cc:

Description

In FLACbitreader_read_rice_signed_block of bitreader.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.

Fixed upstream but no new release.

CVE-2020-0490

Change History (0)

Note: See TracTickets for help on using tickets.