-
Committer:
Bazaar Package Importer
-
Author(s):
Harald Sitter
-
Date:
2009-01-19 22:05:24 UTC
-
Revision ID:
james.westby@ubuntu.com-20090119220524-oiq6qur2isr1a7he
Tags: 2:1.4.10-0ubuntu3.1
* SECURITY UPDATE: integer overflows allow remote attackers to execute
arbitrary code via an Audible Audio (.aa) file (LP: #318555)
- debian/patches/security_audible_tags.diff fix integer overflow while
reading audible aa file tags. Based on upstream patch.
- http://websvn.kde.org/?view=rev&revision=908415
- http://www.trapkit.de/advisories/TKADV2009-002.txt
- CVE-2009-0135
- CVE-2009-0136