CVE-2014-8962
Published: 26 November 2014
Stack-based buffer overflow in stream_decoder.c in libFLAC before 1.3.1 allows remote attackers to execute arbitrary code via a crafted .flac file.
Priority
Status
Package | Release | Status |
---|---|---|
flac Launchpad, Ubuntu, Debian |
upstream |
Released
(1.3.1)
|
lucid |
Released
(1.2.1-2ubuntu0.1)
|
|
precise |
Released
(1.2.1-6ubuntu0.1)
|
|
trusty |
Released
(1.3.0-2ubuntu0.14.04.1)
|
|
utopic |
Released
(1.3.0-2ubuntu0.14.10.1)
|
|
Patches: upstream: https://git.xiph.org/?p=flac.git;h=5b3033a2b355068c11fe637e14ac742d273f076e |