Bug#870341: libvorbis: CVE-2017-11333

Petter Reinholdtsen pere at hungry.com
Tue Aug 1 18:02:47 UTC 2017


Control: retitle -1 libvorbis: CVE-2017-11333 OOM via crafted WAV file

I've tried to figure out of the recently reported security problems are
reported upstream, but the upstream bug tracker is being moved from
trac.xiph.org to https://gitlab.xiph.org/xiph and the migration is
not done yet, so it seem to be impossible to register it with upstream
so far.

Thus I have no idea if there are any patches for this issue yet.  Anyone
know?

-- 
Happy hacking
Petter Reinholdtsen



More information about the pkg-xiph-maint mailing list