Vulnerability Bulletins

DSA-3178 unace - security update

   
Affected software Debian
 
Jakub Wilk discovered that unace, an utility to extract, test and view.ace archives, contained an integer overflow leading to a bufferoverflow. If a user or automated system were tricked into processing aspecially crafted ace archive, an attacker could cause a denial ofservice (application crash) or, possibly, execute arbitrary code.

More info:

https://www.debian.org/security/2015/dsa-3178