Advisories ยป MGASA-2021-0271

Updated wavpack packages fix a security vulnerability

Publication date: 23 Jun 2021
Modification date: 23 Jun 2021
Type: security
Affected Mageia releases : 7
CVE: CVE-2020-35738

Description

WavPack 5.3.0 has an out-of-bounds write in WavpackPackSamples in pack_utils.c
because of an integer overflow in a malloc argument (CVE-2020-35738).
                

References

SRPMS

7/core