[Secure-testing-team] Bug#575743: CVE-2009-3388

Giuseppe Iuculano iuculano at debian.org
Sun Mar 28 21:14:43 UTC 2010


Package: liboggplay
Severity: serious
Tags: security

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi,
the following CVE (Common Vulnerabilities & Exposures) id was
published for liboggplay.

CVE-2009-3388[0]:
| liboggplay in Mozilla Firefox 3.5.x before 3.5.6 and SeaMonkey before
| 2.0.1 might allow context-dependent attackers to cause a denial of
| service (application crash) or execute arbitrary code via unspecified
| vectors, related to "memory safety issues."

If you fix the vulnerability please also make sure to include the
CVE id in your changelog entry.

For further information see:

[0] http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3388
    http://security-tracker.debian.org/tracker/CVE-2009-3388


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)

iEYEARECAAYFAkuvxsEACgkQNxpp46476aqREACfYnCft1W9BXzwONB9Z7fWzr9E
NTAAn18tdjdb7f9EHuL8OBo8wSSIAFiC
=e2C8
-----END PGP SIGNATURE-----





More information about the Secure-testing-team mailing list