UbuntuUpdates.org

Package "libwavpack1"

Name: libwavpack1

Description:

audio codec (lossy and lossless) - library

Latest version: 5.2.0-1ubuntu0.1
Release: focal (20.04)
Level: security
Repository: main
Head package: wavpack
Homepage: http://www.wavpack.com

Links


Download "libwavpack1"


Other versions of "libwavpack1" in Focal

Repository Area Version
base main 5.2.0-1
updates main 5.2.0-1ubuntu0.1

Changelog

Version: 5.2.0-1ubuntu0.1 2021-01-06 15:07:12 UTC

  wavpack (5.2.0-1ubuntu0.1) focal-security; urgency=medium

  * SECURITY UPDATE: Out-of-bounds write
    - debian/patches/CVE-2020-35738.patch: checks bounds
      in order to avoid/fix integer overflows resulting in buffer
      overruns in src/pack_utils.c.
    - CVE-2020-35738

 -- Leonidas Da Silva Barbosa <email address hidden> Tue, 05 Jan 2021 10:55:22 -0300

CVE-2020-35738 WavPack 5.3.0 has an out-of-bounds write in WavpackPackSamples in pack_utils.c because of an integer overflow in a malloc argument. NOTE: some third-



About   -   Send Feedback to @ubuntu_updates