This was fixed in 1.7.2-1, and Karmic now has 1.7.2-3ubuntu1.
** Changed in: mpg123 (Ubuntu Karmic)
Status: In Progress => Fix Released
--
Integer signedness error in the store_id3_text function in the ID3v2 code in
mpg123 before 1.7.2 allows remote attackers to cause a denial of service
(out-of-bounds memory access) and possibly execute arbitrary code
https://bugs.launchpad.net/bugs/370031
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs