Gentoo Archives: gentoo-announce

From: Stefan Cornelius <dercorny@g.o>
To: gentoo-announce@l.g.o
Cc: bugtraq@×××××××××××××.com, full-disclosure@××××××××××××××.uk, security-alerts@×××××××××××××.com
Subject: [gentoo-announce] [ GLSA 200605-14 ] libextractor: Two heap-based buffer overflows
Date: Sun, 21 May 2006 18:14:42
Message-Id: 200605211923.59197.dercorny@gentoo.org
1 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
2 Gentoo Linux Security Advisory GLSA 200605-14
3 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
4 http://security.gentoo.org/
5 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
6
7 Severity: Normal
8 Title: libextractor: Two heap-based buffer overflows
9 Date: May 21, 2006
10 Bugs: #133570
11 ID: 200605-14
12
13 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
14
15 Synopsis
16 ========
17
18 libextractor is vulnerable to two heap overflow vulnerabilities which
19 could lead to the execution of arbitrary code.
20
21 Background
22 ==========
23
24 libextractor is a library used to extract metadata from arbitrary
25 files.
26
27 Affected packages
28 =================
29
30 -------------------------------------------------------------------
31 Package / Vulnerable / Unaffected
32 -------------------------------------------------------------------
33 1 media-libs/libextractor < 0.5.14 >= 0.5.14
34
35 Description
36 ===========
37
38 Luigi Auriemma has found two heap-based buffer overflows in
39 libextractor 0.5.13 and earlier: one of them occurs in the
40 asf_read_header function in the ASF plugin, and the other occurs in the
41 parse_trak_atom function in the Qt plugin.
42
43 Impact
44 ======
45
46 By enticing a user to open a malformed file using an application that
47 employs libextractor and its ASF or Qt plugins, an attacker could
48 execute arbitrary code in the context of the application running the
49 affected library.
50
51 Workaround
52 ==========
53
54 There is no known workaround at this time.
55
56 Resolution
57 ==========
58
59 All libextractor users should upgrade to the latest version:
60
61 # emerge --sync
62 # emerge --ask --oneshot --verbose ">=media-libs/libextractor-0.5.14"
63
64 References
65 ==========
66
67 [ 1 ] CVE-2006-2458
68 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2458
69 [ 2 ] Original advisory
70 http://aluigi.altervista.org/adv/libextho-adv.txt
71
72 Availability
73 ============
74
75 This GLSA and any updates to it are available for viewing at
76 the Gentoo Security Website:
77
78 http://security.gentoo.org/glsa/glsa-200605-14.xml
79
80 Concerns?
81 =========
82
83 Security is a primary focus of Gentoo Linux and ensuring the
84 confidentiality and security of our users machines is of utmost
85 importance to us. Any security concerns should be addressed to
86 security@g.o or alternatively, you may file a bug at
87 http://bugs.gentoo.org.
88
89 License
90 =======
91
92 Copyright 2006 Gentoo Foundation, Inc; referenced text
93 belongs to its owner(s).
94
95 The contents of this document are licensed under the
96 Creative Commons - Attribution / Share Alike license.
97
98 http://creativecommons.org/licenses/by-sa/2.5