ELSA-2020-1581

ELSA-2020-1581 - wavpack security update

Type:SECURITY
Severity:LOW
Release Date:2020-05-05

Description


[5.1.0-15]
- fix Out-of-bounds read in WavpackVerifySingleBlock function (#1663151)
- CVE-2018-19841

[5.1.0-14]
- fix uninitialized variable in ParseCaffHeaderConfig (#1741251)
- CVE-2019-1010317

[5.1.0-13]
- fortify parsing of .dff files (#1707428, #1733627)
- CVE-2019-1010315
- CVE-2019-11498

[5.1.0-12]
- fix possible infinite loop in WavpackPackInit function (#1663154)
- CVE-2018-19840

[5.1.0-11]
- Fix issues with gating

[5.1.0-10]
- fix uninitialized variable in ParseWave64HeaderConfig (#1741200)
- CVE-2019-1010319


Related CVEs


CVE-2018-19841
CVE-2018-19840
CVE-2019-11498
CVE-2019-1010315
CVE-2019-1010317
CVE-2019-1010319

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) wavpack-5.1.0-15.el8.src.rpm341674bb3c80ae838543cebba833c47b-
wavpack-5.1.0-15.el8.aarch64.rpmf8ed72c5f495e071e24c3fab10ab5212-
wavpack-devel-5.1.0-15.el8.aarch64.rpma29afdf9eba2fe8fe2e1ef10a8a250eb-
Oracle Linux 8 (x86_64) wavpack-5.1.0-15.el8.src.rpm341674bb3c80ae838543cebba833c47b-
wavpack-5.1.0-15.el8.i686.rpmbd7911eabd54663c142597a222124aec-
wavpack-5.1.0-15.el8.x86_64.rpm6a599846d09efedf412338f19daa2ba7-
wavpack-devel-5.1.0-15.el8.i686.rpm77d529ff54bf64d3786f296413f16f89-
wavpack-devel-5.1.0-15.el8.x86_64.rpm7302dee31fc8f32a422a69758ffe7d80-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete