mpg321 0.2.10 allows remote attackers to overwrite memory and possibly execute arbitrary code via an mp3 file that passes certain strings to the printf function, possibly triggering a format string vulnerability.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mpg321 | Mpg321 | 0.2.10 (including) | 0.2.10 (including) |
Mpg321 | Ubuntu | dapper | * |
Mpg321 | Ubuntu | devel | * |
Mpg321 | Ubuntu | edgy | * |
Mpg321 | Ubuntu | feisty | * |