.:[ packet storm ]:.
                             
pushing oppressive envelopes
pushing oppressive envelopes

 ///  File Name:MDVSA-2008-124.txt
Description:
Mandriva Linux Security Advisory - A vulnerability in the Speex library was found where it did not properly validate input values read from the Speex files headers. An attacker could create a malicious Speex file that would crash an application or potentially allow the execution of arbitrary code with the privileges of the application calling the Speex library. Xine-lib is similarly affected by this issue. As well, the previous version of xine as provided in Mandriva Linux 2008.1 would crash when playing matroska files, and a regression was introduced that prevented Amarok from playing m4a files.
Homepage:http://www.mandriva.com/security/
File Size:8100
Related CVE(s):CVE-2008-1686
Last Modified:Jun 27 12:05:28 2008
MD5 Checksum:dd7ca66a9032bad00eb87dc64def01d7

 .:. Back