Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.1.10.2017.0129
Kategorie:Mageia Linux Local Security Checks
Titel:Mageia: Security Advisory (MGASA-2017-0129)
Zusammenfassung:The remote host is missing an update for the 'audiofile' package(s) announced via the MGASA-2017-0129 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'audiofile' package(s) announced via the MGASA-2017-0129 advisory.

Vulnerability Insight:
Several vulnerabilities have been discovered in the audiofile library,
which may result in denial of service or the execution of arbitrary code
if a malformed audio file is processed (CVE-2017-6827, CVE-2017-6828,
CVE-2017-6829, CVE-2017-6830, CVE-2017-6831, CVE-2017-6832,
CVE-2017-6833, CVE-2017-6834, CVE-2017-6835, CVE-2017-6836,
CVE-2017-6837, CVE-2017-6838, CVE-2017-6839).

Affected Software/OS:
'audiofile' package(s) on Mageia 5.

Solution:
Please install the updated package(s).

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2017-6827
Debian Security Information: DSA-3814 (Google Search)
http://www.debian.org/security/2017/dsa-3814
https://blogs.gentoo.org/ago/2017/02/20/audiofile-heap-based-buffer-overflow-in-msadpcminitializecoefficients-msadpcm-cpp/
Common Vulnerability Exposure (CVE) ID: CVE-2017-6828
BugTraq ID: 97183
http://www.securityfocus.com/bid/97183
https://blogs.gentoo.org/ago/2017/02/20/audiofile-heap-based-buffer-overflow-in-readvalue-filehandle-cpp/
Common Vulnerability Exposure (CVE) ID: CVE-2017-6829
BugTraq ID: 97189
http://www.securityfocus.com/bid/97189
https://blogs.gentoo.org/ago/2017/02/20/audiofile-global-buffer-overflow-in-decodesample-ima-cpp/
https://github.com/antlarr/audiofile/commit/25eb00ce913452c2e614548d7df93070bf0d066f
https://github.com/mpruett/audiofile/issues/33
http://www.openwall.com/lists/oss-security/2017/03/13/1
Common Vulnerability Exposure (CVE) ID: CVE-2017-6830
https://blogs.gentoo.org/ago/2017/02/20/audiofile-heap-based-buffer-overflow-in-alaw2linear_buf-g711-cpp/
https://github.com/mpruett/audiofile/issues/34
https://github.com/mpruett/audiofile/pull/42
http://www.openwall.com/lists/oss-security/2017/03/13/2
Common Vulnerability Exposure (CVE) ID: CVE-2017-6831
BugTraq ID: 97588
http://www.securityfocus.com/bid/97588
https://blogs.gentoo.org/ago/2017/02/20/audiofile-heap-based-buffer-overflow-in-imadecodeblockwave-ima-cpp/
https://github.com/Hack-Me/Pocs_for_Multi_Versions/tree/main/CVE-2017-6831
https://github.com/antlarr/audiofile/commit/a2e9eab8ea87c4ffc494d839ebb4ea145eb9f2e6
https://github.com/mpruett/audiofile/issues/35
http://www.openwall.com/lists/oss-security/2017/03/13/3
Common Vulnerability Exposure (CVE) ID: CVE-2017-6832
BugTraq ID: 97589
http://www.securityfocus.com/bid/97589
https://blogs.gentoo.org/ago/2017/02/20/audiofile-heap-based-buffer-overflow-in-msadpcmdecodeblock-msadpcm-cpp/
https://github.com/mpruett/audiofile/issues/36
http://www.openwall.com/lists/oss-security/2017/03/13/4
Common Vulnerability Exposure (CVE) ID: CVE-2017-6833
https://blogs.gentoo.org/ago/2017/02/20/audiofile-divide-by-zero-in-blockcodecrunpull-blockcodec-cpp/
https://github.com/mpruett/audiofile/issues/37
http://www.openwall.com/lists/oss-security/2017/03/13/5
Common Vulnerability Exposure (CVE) ID: CVE-2017-6834
https://blogs.gentoo.org/ago/2017/02/20/audiofile-heap-based-buffer-overflow-in-ulaw2linear_buf-g711-cpp/
https://github.com/mpruett/audiofile/issues/38
http://www.openwall.com/lists/oss-security/2017/03/13/6
Common Vulnerability Exposure (CVE) ID: CVE-2017-6835
https://blogs.gentoo.org/ago/2017/02/20/audiofile-divide-by-zero-in-blockcodecreset1-blockcodec-cpp/
https://github.com/mpruett/audiofile/issues/39
http://www.openwall.com/lists/oss-security/2017/03/13/7
Common Vulnerability Exposure (CVE) ID: CVE-2017-6836
https://blogs.gentoo.org/ago/2017/02/20/audiofile-heap-based-buffer-overflow-in-expand3to4modulerun-simplemodule-h/
https://github.com/mpruett/audiofile/issues/40
http://www.openwall.com/lists/oss-security/2017/03/13/8
Common Vulnerability Exposure (CVE) ID: CVE-2017-6837
BugTraq ID: 97314
http://www.securityfocus.com/bid/97314
https://blogs.gentoo.org/ago/2017/02/20/audiofile-multiple-ubsan-crashes/
https://github.com/antlarr/audiofile/commit/c48e4c6503f7dabd41f11d4c9c7b7f8960e7f2c0
https://github.com/mpruett/audiofile/issues/41
http://www.openwall.com/lists/oss-security/2017/03/13/9
Common Vulnerability Exposure (CVE) ID: CVE-2017-6838
https://github.com/antlarr/audiofile/commit/7d65f89defb092b63bcbc5d98349fb222ca73b3c
Common Vulnerability Exposure (CVE) ID: CVE-2017-6839
https://github.com/antlarr/audiofile/commit/beacc44eb8cdf6d58717ec1a5103c5141f1b37f9
CopyrightCopyright (C) 2022 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.