Vulnerability Bulletins

DSA-4140 libvorbis - security update

   
Affected software Debian
 
Richard Zhu discovered that an out-of-bounds memory write in thecodebook parsing code of the Libvorbis multimedia library could resultin the execution of arbitrary code if a malformed Vorbis file is opened.

More info:

https://www.debian.org/security/2018/dsa-4140