Secunia Advisory SA27210FLAC Media File Processing Multiple Vulnerabilities
|
||||||||||||||||||||||||||||||||||||||||||||||||||||
Description
Multiple vulnerabilities have been reported in FLAC, which can be exploited by malicious people to compromise a user's system. The vulnerabilities are caused due to various errors e.g. integer overflow errors, double-free errors, and boundary errors in various components when processing FLAC media files and can be exploited to cause heap-based or stack-based buffer overflows via specially-crafted FLAC media files. Successful exploitation allows execution of arbitrary code. The vulnerabilities are reported in version 1.2.0. Prior versions and other applications using the vulnerable library may also be affected. Solution Provided and/or discovered by Other references Deep Links Do you have additional information related to this advisory?Please provide information about patches, mitigating factors, new versions, exploits, faulty patches, links, and other relevant data by posting comments to this Advisory. You can also send this information to vuln@secunia.com
|
||||||||||||||||||||||||||||||||||||||||||||||||||||