First published: Thu Jul 26 2007(Updated: )
Multiple flaws have been found in libvorbis. These are fixed via libvorbis version 1.2.0. It should be noted that libvorbis 1.2.0 also fixes the issue described in <a class="bz_bug_link bz_status_CLOSED bz_closed bz_public " title="CLOSED ERRATA - CVE-2007-3106 libvorbis array boundary condition" href="show_bug.cgi?id=245991">bug 245991</a>. The id number of each flaw is the subversion commit id. The descriptions were provided by Chris Montgomery. The libvorbis subversion repository is located here: <a href="http://svn.xiph.org/trunk/vorbis">http://svn.xiph.org/trunk/vorbis</a> 13217: possible seek infinite loop in libvorbisfile 13215: multiplexed/non Vorbis stream support [heap read, potential heap write] 13211: better return value checking of seeks [heap read, potential heap write] 13179: check legal maximum blocksize [static array read] 13169,13170,13172: correctly handle codebooks with zero entires [heap read/write] 13168: low bitrate static mode declaration error [static read, heap read, potential heap write] 13151,13153,13154,13155,13167: residue decode vector overflow [heap read/write] 13162: static initializer declarations, check-before-free error fixes [heap read/write] 13149: check legal minimum blocksize [static array read]
Affected Software | Affected Version | How to fix |
---|---|---|
libvorbisfile |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-249780 is high due to multiple flaws identified in libvorbis.
To fix REDHAT-BUG-249780, update libvorbis to version 1.2.0 or higher.
The affected software for REDHAT-BUG-249780 is libvorbis by Xiph.Org.
Libvorbis is an implementation of the Vorbis audio compression format used for encoding and decoding audio.
Yes, REDHAT-BUG-249780 has revealed vulnerabilities that potentially can be exploited if not patched.