Opened 20 years ago
Closed 20 years ago
#2181 closed defect (fixed)
libmusicbrainz security vulnerability
| Reported by: | Owned by: | ||
|---|---|---|---|
| Priority: | high | Milestone: | 6.2.0 |
| Component: | BOOK | Version: | SVN |
| Severity: | high | Keywords: | security libmusicbrainz |
| Cc: |
Description
Vulnerability in libmusicbrainz <= 2.1.3.
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4197
New version released. From the ChangeLog:
Changes for libmusicbrainz 2.1.4
-------------------------------------
- Fixed buffer overflows in the RDF parsing and HTTP code. Patch by
Martin Schulze. (#2066)
- Fixed memory leaks in RDFExtract. (#2061)
- Fixed invalid memory access in the HTTP code. (#2033)
Note:
See TracTickets
for help on using tickets.

Fixed in r6361.