Univention Bugzilla – Bug 52094
(ES 4.3) libopenmpt
Last modified: 2020-11-30 12:20:18 CET
Provide libopenmpt version 0.2.7386~beta20.3-3+deb9u4 for UCS 4.3 First imported at bug #51761 This update addresses the following issue: * In libopenmpt before 0.3.19 and 0.4.x before 0.4.9, ModPlug_InstrumentName and ModPlug_SampleName in libopenmpt_modplug.c do not restrict the lengths of libmodplug output-buffer strings in the C API, leading to a buffer overflow. (CVE-2019-17113)
-> apt-cache policy libopenmpt0 libopenmpt0: Installiert: 0.2.7386~beta20.3-3+deb9u4 Installationskandidat: 0.2.7386~beta20.3-3+deb9u4 Versionstabelle: *** 0.2.7386~beta20.3-3+deb9u4 500 500 http://192.168.0.10/build2 ucs_4.3-0-extsec4.3/amd64/ Packages
CLOSED: Released as extsec4.3 update