[Buildroot] [PATCH] libsndfile: security bump to version 1.0.26

Thomas Petazzoni thomas.petazzoni at free-electrons.com
Tue Dec 15 20:36:48 UTC 2015


Dear Gustavo Zacarias,

On Tue, 15 Dec 2015 14:44:45 -0300, Gustavo Zacarias wrote:
> Fixes:
> CVE-2014-9496 - SD2 buffer read overflow.
> CVE-2014-9756 - file_io.c divide by zero.
> CVE-2015-7805 - AIIF heap write overflow.
> 
> Signed-off-by: Gustavo Zacarias <gustavo at zacarias.com.ar>
> ---
>  package/libsndfile/libsndfile.hash | 2 +-
>  package/libsndfile/libsndfile.mk   | 2 +-
>  2 files changed, 2 insertions(+), 2 deletions(-)

Applied, thanks.

Thomas
-- 
Thomas Petazzoni, CTO, Free Electrons
Embedded Linux, Kernel and Android engineering
http://free-electrons.com


More information about the buildroot mailing list