normalize audio patch.

testing for hardy as follows

Before

normalize-audio max_theme.wav 
Computing levels...
*** glibc detected *** normalize-audio: double free or corruption (out): 
0x00000000006162c0 ***
======= Backtrace: =========
/lib/libc.so.6[0x7ffa4670b08a]
/lib/libc.so.6(cfree+0x8c)[0x7ffa4670ec1c]
/usr/lib/libaudiofile.so.0[0x7ffa46c9231e]
/usr/lib/libaudiofile.so.0[0x7ffa46c92369]
/usr/lib/libaudiofile.so.0[0x7ffa46c80bd3]
/usr/lib/libaudiofile.so.0(afCloseFile+0x33)[0x7ffa46c80f73]
normalize-audio[0x404b95]
normalize-audio[0x402dce]
normalize-audio[0x4040a0]
/lib/libc.so.6(__libc_start_main+0xf4)[0x7ffa466b51c4]
normalize-audio[0x4023a9]
======= Memory map: ========
00400000-0040f000 r-xp 00000000 fe:01 524675                             
/usr/bin/normalize-audio
0060e000-0060f000 rw-p 0000e000 fe:01 524675                             
/usr/bin/normalize-audio
0060f000-00630000 rw-p 0060f000 00:00 0                                  [heap]
7ffa40000000-7ffa40021000 rw-p 7ffa40000000 00:00 0 
7ffa40021000-7ffa44000000 ---p 7ffa40021000 00:00 0 
7ffa46489000-7ffa46496000 r-xp 00000000 fe:00 49763                      
/lib/libgcc_s.so.1
7ffa46496000-7ffa46696000 ---p 0000d000 fe:00 49763                      
/lib/libgcc_s.so.1
7ffa46696000-7ffa46697000 rw-p 0000d000 fe:00 49763                      
/lib/libgcc_s.so.1
7ffa46697000-7ffa467ef000 r-xp 00000000 fe:00 49750                      
/lib/libc-2.7.so
7ffa467ef000-7ffa469ef000 ---p 00158000 fe:00 49750                      
/lib/libc-2.7.so
7ffa469ef000-7ffa469f2000 r--p 00158000 fe:00 49750                      
/lib/libc-2.7.so
7ffa469f2000-7ffa469f4000 rw-p 0015b000 fe:00 49750                      
/lib/libc-2.7.so
7ffa469f4000-7ffa469f9000 rw-p 7ffa469f4000 00:00 0 
7ffa469f9000-7ffa46a79000 r-xp 00000000 fe:00 49769                      
/lib/libm-2.7.so
7ffa46a79000-7ffa46c78000 ---p 00080000 fe:00 49769                      
/lib/libm-2.7.so
7ffa46c78000-7ffa46c7a000 rw-p 0007f000 fe:00 49769                      
/lib/libm-2.7.so
7ffa46c7a000-7ffa46c9f000 r-xp 00000000 fe:01 578436                     
/usr/lib/libaudiofile.so.0.0.2
7ffa46c9f000-7ffa46e9e000 ---p 00025000 fe:01 578436                     
/usr/lib/libaudiofile.so.0.0.2
7ffa46e9e000-7ffa46ea2000 rw-p 00024000 fe:01 578436                     
/usr/lib/libaudiofile.so.0.0.2
7ffa46ea2000-7ffa46ec0000 r-xp 00000000 fe:01 578538                     
/usr/lib/libmad.so.0.2.1
7ffa46ec0000-7ffa470c0000 ---p 0001e000 fe:01 578538                     
/usr/lib/libmad.so.0.2.1
7ffa470c0000-7ffa470c1000 rw-p 0001e000 fe:01 578538                     
/usr/lib/libmad.so.0.2.1
7ffa470c1000-7ffa470de000 r-xp 00000000 fe:00 49741                      
/lib/ld-2.7.so
7ffa47293000-7ffa472c9000 r--p 00000000 fe:01 575430                     
/usr/lib/locale/en_GB/LC_CTYPE
7ffa472c9000-7ffa472ca000 r--p 00000000 fe:01 575435                     
/usr/lib/locale/en_GB/LC_NUMERIC
7ffa472ca000-7ffa472cb000 r--p 00000000 fe:01 575438                     
/usr/lib/locale/en_GB/LC_TIME
7ffa472cb000-7ffa472d0000 r--p 00000000 fe:01 575429                     
/usr/lib/locale/en_GB/LC_COLLATE
7ffa472d0000-7ffa472d1000 r--p 00000000 fe:01 575433                     
/usr/lib/locale/en_GB/LC_MONETARY
7ffa472d1000-7ffa472d2000 r--p 00000000 fe:01 575439                     
/usr/lib/locale/en_GB/LC_MESSAGES/SYS_LC_MESSAGES
7ffa472d2000-7ffa472d3000 r--p 00000000 fe:01 575436                     
/usr/lib/locale/en_GB/LC_PAPER
7ffa472d3000-7ffa472d6000 rw-p 7ffa472d3000 00:00 0 
7ffa472d6000-7ffa472d7000 r--p 00000000 fe:01 575434                     
/usr/lib/locale/en_GB/LC_NAME
7ffa472d7000-7ffa472d8000 r--p 00000000 fe:01 575428                     
/usr/lib/locale/en_GB/LC_ADDRESS
7ffa472d8000-7ffa472d9000 r--p 00000000 fe:01 575437                     
/usr/lib/locale/en_GB/LC_TELEPHONE
7ffa472d9000-7ffa472da000 r--p 00000000 fe:01 575432                     
/usr/lib/locale/en_GB/LC_MEASUREMENT
7ffa472da000-7ffa472db000 r--p 00000000 fe:01 575431                     
/usr/lib/locale/en_GB/LC_IDENTIFICATION
7ffa472db000-7ffa472de000 rw-p 7ffa472db000 00:00 0 
7ffa472de000-7ffa472e0000 rw-p 0001d000 fe:00 49741                      
/lib/ld-2.7.so
7ffff503f000-7ffff5054000 rw-p 7ffffffea000 00:00 0                      [stack]
7ffff5142000-7ffff5144000 r-xp 7ffff5142000 00:00 0                      [vdso]
ffffffffff600000-ffffffffff601000 r-xp 00000000 00:00 0                  
[vsyscall]
Aborted


After libaudiofile fix

Preparing to replace libaudiofile0 0.2.6-7ubuntu1 (using 
libaudiofile0_0.2.6-7ubuntu1.8.04.1_amd64.deb) ...
Unpacking replacement libaudiofile0 ...
Setting up libaudiofile0 (0.2.6-7ubuntu1.8.04.1) ...


[email protected]@narc:~$ normalize-audio max_theme.wav 
Computing levels...
 max_theme.wav     100% done, ETA 00:00:00 (batch 100% done, ETA 00:00:00) 
Applying adjustment of -3.26dB to max_theme.wav...
Segmentation fault 100% done, ETA 00:00:00 (batch 100% done, ETA 00:00:00) 

[1229695.600773] normalize-audio[1131] general protection
rip:7f748837ad9d rsp:7fff2791be50 error:0


After normalize-audio fix

sudo dpkg -i normalize-audio_0.7.7-2ubuntu0.8.04.1_amd64.deb  
(Reading database ... 56067 files and directories currently installed.)
Preparing to replace normalize-audio 0.7.7-2 (using normalize
audio_0.7.7-2ubuntu0.8.04.1_amd64.deb) ...
Unpacking replacement normalize-audio ...
Setting up normalize-audio (0.7.7-2ubuntu0.8.04.1) ...

normalize-audio max_theme.wav 
Computing levels...
 max_theme.wav     100% done, ETA 00:00:00 (batch 100% done, ETA 00:00:00) 
Applying adjustment of -3.26dB to max_theme.wav...
 max_theme.wav     100% done, ETA 00:00:00 (batch 100% done, ETA 00:00:00) 

** Attachment added: "hardy-normalize-audio.debdiff"
   http://launchpadlibrarian.net/39960923/hardy-normalize-audio.debdiff

-- 
CVE-2008-5824 audiofile denial of service (application crash) or possibly 
execute arbitrary code via a crafted WAV file
https://bugs.launchpad.net/bugs/527033
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to