ELSA-2020-3877

ELSA-2020-3877 - audiofile security update

Type:SECURITY
Severity:MODERATE
Release Date:2020-10-06

Description


[1:0.3.6-9]
- Apply security patches. CVE-2018-17095, CVE-2018-13440
- Resolves: rhbz#1600369, rhbz#1601014, rhbz#1637128

[1:0.3.6-8]
- Escape macros in %changelog

[1:0.3.6-7]
- Merge upstream pull requests #42,#43,#44 from Agostino Sarubbo to fix
security issues. CVE-2017-6827, CVE-2017-6828,
CVE-2017-6829, CVE-2017-6830, CVE-2017-6831,
CVE-2017-6832, CVE-2017-6833, CVE-2017-6834, CVE-2017-6835,
CVE-2017-6836, CVE-2017-6837, CVE-2017-6838, CVE-2017-6839

[1:0.3.6-6]
- patch to compile with GCC 6

[1:0.3.6-5]
- Merge fix from upstream pull request #25 for CVE-2015-7747.
Test conversion from e.g. 16-bit LE stereo to 8-bit LE mono
no longer causes corruption.


Related CVEs


CVE-2018-17095
CVE-2018-13440

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (aarch64) audiofile-0.3.6-9.el7.src.rpm34aa7a9a037f08062d28f5d2267e577a-
audiofile-0.3.6-9.el7.aarch64.rpmfe4bac62bf5d242c5af78d9e5f19eddd-
audiofile-devel-0.3.6-9.el7.aarch64.rpm18d33e185f55e961bbb061f393f826c2-
Oracle Linux 7 (x86_64) audiofile-0.3.6-9.el7.src.rpm34aa7a9a037f08062d28f5d2267e577a-
audiofile-0.3.6-9.el7.i686.rpm2a1b14559758c2130eb95ff449f6b655-
audiofile-0.3.6-9.el7.x86_64.rpmcc84dfbdeea7b8bad7dd090ee25504c1-
audiofile-devel-0.3.6-9.el7.i686.rpm871395fab51a7327de9c109336ccf1f7-
audiofile-devel-0.3.6-9.el7.x86_64.rpme4bb05f02ee364b74ef07beee97162ef-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete