Oval Definition:oval:com.ubuntu.bionic:def:2019152960000000
Revision Date:2019-08-21Version:1
Title:CVE-2019-15296 on Ubuntu 18.04 LTS (bionic) - medium.
Description:An issue was discovered in Freeware Advanced Audio Decoder 2 (FAAD2) 2.8.8. The faad_resetbits function in libfaad/bits.c is affected by a buffer overflow vulnerability. The number of bits to be read is determined by ld->buffer_size - words*4, cast to uint32. If ld->buffer_size - words*4 is negative, a buffer overflow is later performed via getdword_n(&ld->start[words], ld->bytes_left).
Family:unixClass:vulnerability
Status:Reference(s):CVE-2019-15296
Platform(s):Ubuntu 18.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 18.04 LTS (bionic) is installed.
  • AND faad2 package in bionic is affected and needs fixing.
  • BACK