CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
38.8%
USN-6360-1 fixed a vulnerability in FLAC. This update provides the
corresponding update for Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and
Ubuntu 18.04 LTS.
Original advisory details:
It was discovered that FLAC incorrectly handled encoding certain files. A
remote attacker could use this issue to cause FLAC to crash, resulting in a
denial of service, or possibly execute arbitrary code.
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
Ubuntu | 18.04 | noarch | flac | < 1.3.2-1ubuntu0.1+esm1 | UNKNOWN |
Ubuntu | 18.04 | noarch | flac | < 1.3.2-1ubuntu0.1 | UNKNOWN |
Ubuntu | 18.04 | noarch | flac-dbgsym | < 1.3.2-1ubuntu0.1 | UNKNOWN |
Ubuntu | 18.04 | noarch | libflac++-dev | < 1.3.2-1ubuntu0.1 | UNKNOWN |
Ubuntu | 18.04 | noarch | libflac++6v5 | < 1.3.2-1ubuntu0.1 | UNKNOWN |
Ubuntu | 18.04 | noarch | libflac++6v5-dbgsym | < 1.3.2-1ubuntu0.1 | UNKNOWN |
Ubuntu | 18.04 | noarch | libflac-dev | < 1.3.2-1ubuntu0.1 | UNKNOWN |
Ubuntu | 18.04 | noarch | libflac-doc | < 1.3.2-1ubuntu0.1 | UNKNOWN |
Ubuntu | 18.04 | noarch | libflac8 | < 1.3.2-1ubuntu0.1 | UNKNOWN |
Ubuntu | 18.04 | noarch | libflac8-dbgsym | < 1.3.2-1ubuntu0.1 | UNKNOWN |