Headline
Ubuntu Security Notice USN-5749-1
Ubuntu Security Notice 5749-1 - Erik de Castro Lopo and Agostino Sarubbo discovered that libsamplerate did not properly perform bounds checking. If a user were tricked into processing a specially crafted audio file, an attacker could possibly use this issue to cause a crash.
==========================================================================Ubuntu Security Notice USN-5749-1November 29, 2022libsamplerate vulnerability==========================================================================A security issue affects these releases of Ubuntu and its derivatives:- Ubuntu 16.04 ESMSummary:libsamplerate could cause a crash if it processed a specially craftedaudio file.Software Description:- libsamplerate: Audio sample rate conversion libraryDetails:Erik de Castro Lopo and Agostino Sarubbo discovered that libsampleratedid not properly perform bounds checking. If a user were tricked intoprocessing a specially crafted audio file, an attacker could possiblyuse this issue to cause a crash.Update instructions:The problem can be corrected by updating your system to the followingpackage versions:Ubuntu 16.04 ESM: libsamplerate0 0.1.8-8ubuntu0.1~esm1In general, a standard system update will make all the necessary changes.References: https://ubuntu.com/security/notices/USN-5749-1 CVE-2017-7697