Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.59042
Category:Mandrake Local Security Checks
Title:Mandrake Security Advisory MDKSA-2007:214 (flac)
Summary:NOSUMMARY
Description:Description:

The remote host is missing an update to flac
announced via advisory MDKSA-2007:214.

A security vulnerability was discovered in how flac processed audio
data. An attacker could create a carefully crafted FLAC audio file
that could cause an application linked against the flac libraries to
crash or execute arbitrary code when opened.

Updated packages have been patched to prevent this issue.

Affected: 2007.0, 2007.1, 2008.0, Corporate 3.0

Solution:
To upgrade automatically use MandrakeUpdate or urpmi. The verification
of md5 checksums and GPG signatures is performed automatically for you.

https://secure1.securityspace.com/smysecure/catid.html?in=MDKSA-2007:214

Risk factor : Critical

CVSS Score:
9.3

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2007-4619
BugTraq ID: 26042
http://www.securityfocus.com/bid/26042
Debian Security Information: DSA-1469 (Google Search)
http://www.debian.org/security/2008/dsa-1469
https://www.redhat.com/archives/fedora-package-announce/2007-November/msg00035.html
http://security.gentoo.org/glsa/glsa-200711-15.xml
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=608
http://www.mandriva.com/security/advisories?name=MDKSA-2007:214
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10571
http://www.redhat.com/support/errata/RHSA-2007-0975.html
http://securitytracker.com/id?1018815
http://secunia.com/advisories/27210
http://secunia.com/advisories/27223
http://secunia.com/advisories/27355
http://secunia.com/advisories/27399
http://secunia.com/advisories/27507
http://secunia.com/advisories/27601
http://secunia.com/advisories/27625
http://secunia.com/advisories/27628
http://secunia.com/advisories/27780
http://secunia.com/advisories/27878
http://secunia.com/advisories/28548
SuSE Security Announcement: SUSE-SR:2007:022 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2007-10/msg00008.html
http://www.ubuntu.com/usn/usn-540-1
http://www.vupen.com/english/advisories/2007/3483
http://www.vupen.com/english/advisories/2007/3484
http://www.vupen.com/english/advisories/2007/4061
XForce ISS Database: flac-media-files-bo(37187)
https://exchange.xforce.ibmcloud.com/vulnerabilities/37187
CopyrightCopyright (c) 2007 E-Soft Inc. http://www.securityspace.com

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.