Memory corruption in libvorbis - CVE-2018-10392
Published: June 9, 2018 / Updated: June 12, 2018
Vulnerability details
The vulnerability allows a remote attacker to cause DoS condition on the target system.
The vulnerability exists due to improper validation of the number of channels by mapping0_forward in mapping0.c in Xiph.Org libvorbis. A remote unauthenticated attacker can send a specially crafted file, trigger heap-based buffer overflow or over-read and cause the service to crash.
Affected software
Gentoo Linux
Red Hat Enterprise Linux for x86_64
Opensuse
Ubuntu
Fedora
busybox (Alpine package)
libvorbis (Alpine package)
firefox-esr (Alpine package)
mingw-libvorbis
libvorbis
libvorbis0a (Ubuntu package)
libvorbisfile3 (Ubuntu package)
libvorbisenc2 (Ubuntu package)
How to mitigate CVE-2018-10392
mingw-libvorbis - update to 1.3.6-2.fc29
libvorbis - update to 1.3.6-3.fc28
libvorbis0a (Ubuntu package) - update to 1.3.53ubuntu0.2+esm1
libvorbisfile3 (Ubuntu package) - update to 1.3.53ubuntu0.2+esm1
libvorbisenc2 (Ubuntu package) - update to 1.3.53ubuntu0.2+esm1
External References
Related Security Bulletins
- OpenSUSE Linux update for libvorbis
- OpenSUSE Linux update for libvorbis
- Red Hat update for libvorbis
- Gentoo update for libvorbis
- Memory corruption in libvorbis (Alpine package)
- Memory corruption in busybox (Alpine package)
- Memory corruption in firefox-esr (Alpine package)
- Ubuntu update for libvorbis
- Fedora 28 update for libvorbis
- Fedora 29 update for mingw-libvorbis