RHSA-2010:0720: Moderate: mikmod security update
MikMod is a MOD music file player for Linux, UNIX, and similar operatingsystems. It supports various file formats including MOD, STM, S3M, MTM, XM,ULT, and IT.Multiple input validation flaws, resulting in buffer overflows, werediscovered in MikMod. Specially-crafted music files in various formatscould, when played, cause an application using the MikMod library to crashor, potentially, execute arbitrary code. (CVE-2009-3995, CVE-2009-3996,CVE-2007-6720)All MikMod users should upgrade to these updated packages, which containbackported patches to correct these issues. All running applications usingthe MikMod library must be restarted for this update to take effect.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2010:0720?
RHSA-2010:0720 is classified as a moderate severity vulnerability.
How do I fix RHSA-2010:0720?
To fix RHSA-2010:0720, you should update to the latest version of the mikmod package available for your system.
Which packages are affected by RHSA-2010:0720?
RHSA-2010:0720 affects the mikmod and mikmod-devel packages up to versions 3.1.6-39.el5_5.1 and 3.1.6-33.el4_8.1 respectively.
What type of vulnerability is present in RHSA-2010:0720?
RHSA-2010:0720 contains multiple input validation flaws resulting in buffer overflows.
What systems are impacted by RHSA-2010:0720?
RHSA-2010:0720 impacts systems running Red Hat Enterprise Linux versions 4 and 5.