User Activity

  • Posted a comment on ticket #255 on mpg123

    I am short on time and should actually be far away from the computer by now … so I made a hotfix for this issue and am releasing version 1.25.6. I hope this works for you, please drop a note in case (not) so that we can close this report. The fix is not nice (ideally, the code paths should ensure that they never request more data than there is), but should stop similar possible overflows where some code tries to get more frame data than there is.

  • Modified ticket #254 on mpg123

    heap buffer overflow in INT123_parse_new_id3

  • Modified ticket #254 on mpg123

    heap buffer overflow in INT123_parse_new_id3

  • Posted a comment on ticket #254 on mpg123

    OK, released the fixed version 1.25.5 now. Thanks for reporting and testing.

  • Posted a comment on ticket #254 on mpg123

    That is a good thing, then;-) I'll do the release tonight. Thanks.

  • Modified a comment on ticket #254 on mpg123

    I modified the patch a bit to make more sense, also adding another case we did not trigger yet. It should work the same for yours. I'll release soon-ish. Maybe you have time to confirm that it also still works for you. (updated patch, had some leftovers)

  • Posted a comment on ticket #254 on mpg123

    I modified the patch a bit to make more sense, also adding another case we did not trigger yet. It should work the same for yours. I'll release soon-ish. Maybe you have time to confirm that it also still works for you.

  • Posted a comment on ticket #254 on mpg123

    Great, I'm pushing out a release. It's a more complete fix for the known CVE, then.

View All

Personal Data

Username:
sobukus
Joined:
2002-02-26 22:48:01

Projects

  • Project Logo mpg123   Last Updated:

Skills

  • No skills entered.

Personal Tools

Get latest updates about Open Source Projects, Conferences and News.

Sign up for the SourceForge newsletter:

JavaScript is required for this form.





No, thanks