Advisories ยป MGASA-2021-0324

Updated fluidsynth packages fix a security vulnerability

Publication date: 09 Jul 2021
Modification date: 08 Jul 2021
Type: security
Affected Mageia releases : 7 , 8
CVE: CVE-2021-21417

Description

fluidsynth is a software synthesizer based on the SoundFont 2 specifications.
A use after free violation was discovered in fluidsynth, that can be triggered
when loading an invalid SoundFont file (CVE-2021-21417).
                

References

SRPMS

8/core

7/core