flac-1.3.3-10.el9.1

エラータID: AXSA:2023-6394:02

Release date: 
Tuesday, September 12, 2023 - 09:31
Subject: 
flac-1.3.3-10.el9.1
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
High
Description: 

FLAC stands for Free Lossless Audio Codec. FLAC is similar to Ogg Vorbis, but lossless. The FLAC project consists of the stream format, reference encoders and decoders in library form, a command-line program to encode and decode FLAC files, and a command-line metadata editor for FLAC files.

Security Fix(es):

* flac: Remote Code Execution (RCE) via the bitwriter_grow_ function, by supplying crafted input to the encoder (CVE-2020-22219)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2020-22219
Buffer Overflow vulnerability in function bitwriter_grow_ in flac before 1.4.0 allows remote attackers to run arbitrary code via crafted input to the encoder.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. flac-1.3.3-10.el9.1.src.rpm
    MD5: 3bbf10601912507001f57caf469b1f17
    SHA-256: 7dbbccfe64f64d407a01d63d8833ce48561564df72ea49c803aa47d9f6f52777
    Size: 1.01 MB

Asianux Server 9 for x86_64
  1. flac-1.3.3-10.el9.1.x86_64.rpm
    MD5: 0b41c9cffb4f6738a7443b9d3596724b
    SHA-256: bcc589255128c40e6be9b64db47722842308b5939a89f0b39bb0dd61119b903a
    Size: 220.90 kB
  2. flac-devel-1.3.3-10.el9.1.i686.rpm
    MD5: 9b3b5b765fad9fe47f143eae7a3eddf6
    SHA-256: 5ca1461bdcf7fe2758889f5a09b7d5fe2b5bd6ec7ca90671714dcb5d0a006e10
    Size: 331.60 kB
  3. flac-devel-1.3.3-10.el9.1.x86_64.rpm
    MD5: eed355a505ba4cfa42f262c91829279e
    SHA-256: c9d582f2353d21969cf7f58f6949498f2979838c7f68cd86663a517383f93864
    Size: 331.63 kB
  4. flac-libs-1.3.3-10.el9.1.i686.rpm
    MD5: 34ba36d1ca9f45894e0cb534c48a6eb4
    SHA-256: b8ee3b2911019ea382780f0cd99d4dc01524af40e9994ccc334f35b0ecbda48a
    Size: 231.04 kB
  5. flac-libs-1.3.3-10.el9.1.x86_64.rpm
    MD5: 9df9a65ec5b61a8212aa7756bc2af641
    SHA-256: 7e5945eef408b05572c35315861f03508ff6a8241863d25d2c83d566b9e8bb5d
    Size: 217.04 kB