Summary
Ubuntu Update for Linux kernel vulnerabilities USN-682-1
Solution
Please Install the Updated Packages.
Insight
It was discovered that libvorbis did not correctly handle certain malformed sound files. If a user were tricked into opening a specially crafted sound file with an application that uses libvorbis, an attacker could execute arbitrary code with the user's privileges.
Affected
libvorbis vulnerabilities on Ubuntu 6.06 LTS ,
Ubuntu 7.10 ,
Ubuntu 8.04 LTS
Severity
Classification
-
CVE CVE-2008-1419, CVE-2008-1420, CVE-2008-1423 -
CVSS Base Score: 9.3
AV:N/AC:M/Au:N/C:C/I:C/A:C
Related Vulnerabilities