kumquat-buildroot/package/audiofile
Peter Korsgaard bd5f84d301 audiofile: add security patch for CVE-2017-6831
Heap-based buffer overflow in the decodeBlockWAVE function in IMA.cpp in
Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause a
denial of service (crash) via a crafted file.

https://blogs.gentoo.org/ago/2017/02/20/audiofile-heap-based-buffer-overflow-in-imadecodeblockwave-ima-cpp
https://github.com/mpruett/audiofile/issues/35

Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
2017-03-31 13:36:26 +02:00
..
0001-Fix-pkg-config-for-static-linking.patch
0002-cast-to-unsigned-gcc6.patch
0003-Always-check-the-number-of-coefficients.patch
0004-clamp-index-values-to-fix-index-overflow-in-IMA.cpp.patch
0005-Check-for-multiplication-overflow-in-sfconvert.patch audiofile: add security patch for CVE-2017-6830 / CVE-2017-6834 / CVE-2017-6836 / CVE-2017-6838 2017-03-31 13:36:23 +02:00
0006-Actually-fail-when-error-occurs-in-parseFormat.patch audiofile: add security patch for CVE-2017-6831 2017-03-31 13:36:26 +02:00
audiofile.hash
audiofile.mk
Config.in