UbuntuUpdates.org

Package "espeak-ng"

Name: espeak-ng

Description:

This package is just an umbrella for a group of other packages, it has no description.
Description samples from packages in group:

  • Multi-lingual software speech synthesizer: speech data files
  • Multi-lingual software speech synthesizer: development files
  • Multi-lingual software speech synthesizer: development files
  • Multi-lingual software speech synthesizer: shared library

Latest version: 1.51+dfsg-11ubuntu0.1
Release: mantic (23.10)
Level: security
Repository: main

Links



Other versions of "espeak-ng" in Mantic

Repository Area Version
base universe 1.51+dfsg-11
base main 1.51+dfsg-11
security universe 1.51+dfsg-11ubuntu0.1
updates main 1.51+dfsg-11ubuntu0.1
updates universe 1.51+dfsg-11ubuntu0.1

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 1.51+dfsg-11ubuntu0.1 2024-07-01 07:07:16 UTC

  espeak-ng (1.51+dfsg-11ubuntu0.1) mantic-security; urgency=medium

  * SECURITY UPDATE: buffer overflow (CVE-2023-49990, CVE-2023-49992,
    CVE-2023-49993), buffer underflow (CVE-2023-49991) and floating point
    exception issues (CVE-2023-49994)
    - debian/patches/CVE-2023-49990_49991_49992_49993_49994.patch: Fix
      CVE crashes
    - CVE-2023-49990
    - CVE-2023-49991
    - CVE-2023-49992
    - CVE-2023-49993
    - CVE-2023-49994

 -- Nishit Majithia <email address hidden> Wed, 26 Jun 2024 18:08:54 +0530

CVE-2023-49990 Espeak-ng 1.52-dev was discovered to contain a buffer-overflow via the function SetUpPhonemeTable at synthdata.c.
CVE-2023-49992 Espeak-ng 1.52-dev was discovered to contain a Stack Buffer Overflow via the function RemoveEnding at dictionary.c.
CVE-2023-49993 Espeak-ng 1.52-dev was discovered to contain a Buffer Overflow via the function ReadClause at readclause.c.
CVE-2023-49991 Espeak-ng 1.52-dev was discovered to contain a Stack Buffer Underflow via the function CountVowelPosition at synthdata.c.
CVE-2023-49994 Espeak-ng 1.52-dev was discovered to contain a Floating Point Exception via the function PeaksToHarmspect at wavegen.c.



About   -   Send Feedback to @ubuntu_updates