Joined: 12 May 2004
|Posted: Sat Oct 20, 2012 3:26 am Post subject: [ GLSA 201210-06 ] Libav: Multiple vulnerabilities
|Gentoo Linux Security Advisory
Title: Libav: Multiple vulnerabilities (GLSA 201210-06)
Date: October 20, 2012
Bug(s): #408555, #422537
Multiple vulnerabilities have been found in Libav, allowing
attackers to execute arbitrary code or cause Denial of Service.
Libav is a complete solution to record, convert and stream audio and
Vulnerable: < 0.8.3
Unaffected: >= 0.8.3
Architectures: All supported architectures
Multiple vulnerabilities have been discovered in Libav. Please review
the CVE identifiers referenced below for details.
A remote attacker could entice a user to open a specially crafted media
file in an application linked against Libav, possibly resulting in
execution of arbitrary code with the privileges of the application or a
Denial of Service condition.
There is no known workaround at this time.
All Libav users should upgrade to the latest version:
|# emerge --sync
# emerge --ask --oneshot --verbose ">=media-video/libav-0.8.3"
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum