Updated fluidsynth packages fix a security vulnerability
Publication date: 09 Jul 2021Modification date: 08 Jul 2021
Type: security
Affected Mageia releases : 7 , 8
CVE: CVE-2021-21417
Description
fluidsynth is a software synthesizer based on the SoundFont 2 specifications. A use after free violation was discovered in fluidsynth, that can be triggered when loading an invalid SoundFont file (CVE-2021-21417).
References
SRPMS
8/core
- fluidsynth-2.1.8-1.mga8
7/core
- fluidsynth-2.0.5-1.1.mga7