Bug#661197: More CVEs

Yves-Alexis Perez corsac at debian.org
Mon Apr 16 20:56:13 UTC 2012


retitle 661197 multiple vulnerabilities in csound
thanks

More vulnerabilities were found in csound:

CVE-2012-2106: integer overflow in pv_import (https://bugzilla.redhat.com/show_bug.cgi?id=810802)
CVE-2012-2107: integer overflow in lpc_import (https://bugzilla.redhat.com/show_bug.cgi?id=810807)
CVE-2012-2108: stack-based buffer overflow in lpc_import (https://bugzilla.redhat.com/show_bug.cgi?id=810810)

I don't think there's a need for a new bug though, so I'm adding them here.

Regards,
-- 
Yves-Alexis
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 836 bytes
Desc: This is a digitally signed message part
URL: <http://lists.alioth.debian.org/pipermail/pkg-multimedia-maintainers/attachments/20120416/d22a638a/attachment-0001.pgp>


More information about the pkg-multimedia-maintainers mailing list