~ubuntu-security/ubuntu-cve-tracker/master

« back to all changes in this revision

Viewing changes to retired/CVE-2009-0135

  • Committer: Steve Beattie
  • Date: 2019-02-19 06:18:27 UTC
  • Revision ID: sbeattie@ubuntu.com-20190219061827-oh57fzcfc1u9dlfk
The ubuntu-cve-tracker project has been converted to git.

Please use 'git clone https://git.launchpad.net/ubuntu-cve-tracker' to
get the converted tree.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
Candidate: CVE-2009-0135
2
 
PublicDate: 2009-01-16
3
 
References:
4
 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0135
5
 
 http://trapkit.de/advisories/TKADV2009-002.txt
6
 
 http://www.debian.org/security/2009/dsa-1706
7
 
 https://usn.ubuntu.com/usn/usn-739-1
8
 
Description:
9
 
 Multiple integer overflows in the Audible::Tag::readTag function in
10
 
 metadata/audible/audibletag.cpp in Amarok 1.4.10 through 2.0.1 allow remote
11
 
 attackers to execute arbitrary code via an Audible Audio (.aa) file with a
12
 
 large (1) nlen or (2) vlen Tag value, each of which triggers a heap-based
13
 
 buffer overflow.
14
 
Ubuntu-Description:
15
 
Notes:
16
 
Bugs:
17
 
 https://bugs.launchpad.net/ubuntu/+source/amarok/+bug/318555
18
 
 http://bugs.gentoo.org/show_bug.cgi?id=254896
19
 
 https://bugzilla.redhat.com/show_bug.cgi?id=479560
20
 
 https://bugzilla.redhat.com/show_bug.cgi?id=479946
21
 
Priority: medium
22
 
Discovered-by:
23
 
Assigned-to: mdeslaur
24
 
 
25
 
Patches_amarok:
26
 
 upstream: http://websvn.kde.org/?view=rev&revision=908391 (trunk)
27
 
 upstream: http://websvn.kde.org/?view=rev&revision=908401 (2.0.x)
28
 
 upstream: http://websvn.kde.org/?view=rev&revision=908415 (1.4.x)
29
 
 vendor: http://patch-tracking.debian.net/patch/series/view/amarok/1.4.10-3/20_security_audible_tags.diff
30
 
upstream_amarok: released (2.0.1.1-1)
31
 
dapper_amarok: not-affected (code not present)
32
 
gutsy_amarok: released (2:1.4.7-0ubuntu3.2)
33
 
hardy_amarok: released (2:1.4.9.1-0ubuntu3.2)
34
 
intrepid_amarok: released (2:1.4.10-0ubuntu3.1)
35
 
devel_amarok: not-affected (2.0.1.1-0ubuntu5)