Home / vulnerabilities MDVSA-2008-103.txt
Posted on 20 May 2008
Source : packetstormsecurity.org Link
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
_______________________________________________________________________
Mandriva Linux Security Advisory MDVSA-2008:103
http://www.mandriva.com/security/
_______________________________________________________________________
Package : libid3tag
Date : May 19, 2008
Affected: 2008.0, 2008.1, Corporate 3.0
_______________________________________________________________________
Problem Description:
field.c in the libid3tag 0.15.0b library allows context-dependent
attackers to cause a denial of service (CPU and memory consumption)
via an ID3_FIELD_TYPE_STRINGLIST field that ends in '