USN-5184-1: libmysofa vulnerability
8 December 2021
libmysofa could be made to crash if it received specially crafted input.
Releases
Packages
- libmysofa - library to read HRTFs stored in the AES69-2015 SOFA format
Details
It was discovered that libmysofa mishandled certain input. An attacker could
use this vulnerability to cause a denial of service (crash).
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 20.04
-
libmysofa1
-
1.0~dfsg0-1ubuntu0.1~esm1
Available with Ubuntu Pro
Ubuntu 18.04
-
libmysofa0
-
0.6~dfsg0-3+deb10u1ubuntu0.1~esm1
Available with Ubuntu Pro
In general, a standard system update will make all the necessary changes.