Lucene search

K
redhatRedHatRHSA-2007:0975
HistoryOct 22, 2007 - 12:00 a.m.

(RHSA-2007:0975) Important: flac security update

2007-10-2200:00:00
access.redhat.com
15

EPSS

0.467

Percentile

97.5%

FLAC is a Free Lossless Audio Codec. The flac package consists of a FLAC
encoder and decoder in library form, a program to encode and decode FLAC
files, a metadata editor for FLAC files and input plugins for various music
players.

A security flaw was found in the way flac processed audio data. An
attacker could create a carefully crafted FLAC audio file in such a way that
it could cause an application linked with flac libraries to crash or execute
arbitrary code when it was opened. (CVE-2007-4619)

Users of flac are advised to upgrade to this updated package, which
contains a backported patch that resolves this issue.