Updated wavpack packages fix a security vulnerability
Publication date: 23 Jun 2021Modification date: 23 Jun 2021
Type: security
Affected Mageia releases : 7
CVE: CVE-2020-35738
Description
WavPack 5.3.0 has an out-of-bounds write in WavpackPackSamples in pack_utils.c because of an integer overflow in a malloc argument (CVE-2020-35738).
References
SRPMS
7/core
- wavpack-5.1.0-4.2.mga7