libsndfile-1.0.31-8.el9_5.2

エラータID: AXSA:2024-9490:04

Release date: 
Wednesday, December 25, 2024 - 11:06
Subject: 
libsndfile-1.0.31-8.el9_5.2
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
Moderate
Description: 

libsndfile is a C library for reading and writing files containing sampled
sound, such as AIFF, AU, or WAV.

Security Fix(es):

libsndfile: Segmentation fault error in ogg_vorbis.c:417
vorbis_analysis_wrote() (CVE-2024-50612)

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE page(s)
listed in the References section.

CVE(s):
CVE-2024-50612
libsndfile through 1.2.2 has an ogg_vorbis.c vorbis_analysis_wrote out-of-bounds read.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. libsndfile-1.0.31-8.el9_5.2.src.rpm
    MD5: 4fc3b479f3ab945cb4c0101f75ff43c6
    SHA-256: 325b803866e27111aec0ce45e280cc1796af3cf06e300fcb3eac9d08b24543cc
    Size: 879.92 kB

Asianux Server 9 for x86_64
  1. libsndfile-1.0.31-8.el9_5.2.i686.rpm
    MD5: c21bbfd20e52457110e570fb7a077985
    SHA-256: a2acf25a8531a76c9c19b0e75daec55c08f3457a17a4af86a8fdcc6763b6a1f3
    Size: 232.92 kB
  2. libsndfile-1.0.31-8.el9_5.2.x86_64.rpm
    MD5: 8cb2536554b95818a5d2ca60a5a93ef3
    SHA-256: 698ea5750b858158de912f91eb41c62bc81d3eca1a5904a41e3b9f0c8f6630df
    Size: 205.53 kB
  3. libsndfile-devel-1.0.31-8.el9_5.2.i686.rpm
    MD5: ca0314c1643246cce0241fc18431687c
    SHA-256: 4ee96c0c12f3c9609ed1356c4fc293beea25fabe3493293257edfdfa1b568629
    Size: 85.83 kB
  4. libsndfile-devel-1.0.31-8.el9_5.2.x86_64.rpm
    MD5: ab4ac0bbe03ebe70971a5c65c6bf4840
    SHA-256: ba86283e0119f8fccbc98243786d2580a42966a257e82a5d6f677e9ccd269a5b
    Size: 85.81 kB
  5. libsndfile-utils-1.0.31-8.el9_5.2.x86_64.rpm
    MD5: e36b85ecbc5ae58a9508e5a6f64f7310
    SHA-256: c5e901816a7759aea9050d37d13370d1315de4d12c7426a4722e377be75ae2a4
    Size: 65.98 kB