mpg123 1.29.3-1ubuntu0.1 source package in Ubuntu

Changelog

mpg123 (1.29.3-1ubuntu0.1) jammy-security; urgency=medium

  * SECURITY UPDATE: OOB write during PCM decoding
    - debian/patches/CVE-2024-10573.patch: don't prepare for actual frame
      data when there is none and separate header data into a struct,
      ensure late updating in frame in src/libmpg123/frame.c,
      src/libmpg123/frame.h, src/libmpg123/layer1.c,
      src/libmpg123/layer2.c, src/libmpg123/layer3.c,
      src/libmpg123/libmpg123.c, src/libmpg123/parse.c.
    - CVE-2024-10573

 -- Marc Deslauriers <email address hidden>  Mon, 04 Nov 2024 13:27:24 -0500

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Jammy
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
sound
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Jammy updates main sound
Jammy security main sound

Downloads

File Size SHA-256 Checksum
mpg123_1.29.3.orig.tar.bz2 1.0 MiB 963885d8cc77262f28b77187c7d189e32195e64244de2530b798ddf32183e847
mpg123_1.29.3.orig.tar.bz2.asc 833 bytes b805d96f2affd4a43d6252f85cd1aa5cc9dd2c68fb29ff903f44fa3ccc129e53
mpg123_1.29.3-1ubuntu0.1.debian.tar.xz 32.9 KiB 6bf685a9c05195d6f724623663a19d5a17d1fc2d8e8567e7b8791c521dc65ccc
mpg123_1.29.3-1ubuntu0.1.dsc 2.7 KiB 2fc0f75dab7c2f70d6be8a83b9e456c5315ee3fb078934d21b1cf4412045e3d2

View changes file

Binary packages built by this source

libmpg123-0: MPEG layer 1/2/3 audio decoder (shared library)

 mpg123 is a real time MPEG 1.0/2.0/2.5 audio player/decoder for layers
 1, 2 and 3 (MPEG 1.0 layer 3 also known as MP3).
 .
 This package contains the C libraries needed to run executables that use
 the mpg123 library.

libmpg123-0-dbgsym: debug symbols for libmpg123-0
libmpg123-dev: MPEG layer 1/2/3 audio decoder (development files)

 mpg123 is a real time MPEG 1.0/2.0/2.5 audio player/decoder for layers
 1, 2 and 3 (MPEG 1.0 layer 3 also known as MP3).
 .
 This package contains the C development headers and library files needed
 to compile programs using the mpg123 library.

libout123-0: MPEG layer 1/2/3 audio decoder (libout123 shared library)

 mpg123 is a real time MPEG 1.0/2.0/2.5 audio player/decoder for layers
 1, 2 and 3 (MPEG 1.0 layer 3 also known as MP3).
 .
 This package contains the shared out123 library.

libout123-0-dbgsym: debug symbols for libout123-0
libsyn123-0: MPEG layer 1/2/3 audio decoder (libsyn123 shared library)

 mpg123 is a real time MPEG 1.0/2.0/2.5 audio player/decoder for layers
 1, 2 and 3 (MPEG 1.0 layer 3 also known as MP3).
 .
 This package contains the shared syn123 library.

libsyn123-0-dbgsym: debug symbols for libsyn123-0
mpg123: MPEG layer 1/2/3 audio player

 mpg123 is a real time MPEG 1.0/2.0/2.5 audio player/decoder for layers
 1, 2 and 3 (MPEG 1.0 layer 3 also known as MP3).
 .
 This package contains output plugins for several audio systems, including
 OSS4, the Advanced Linux Sound Architecture (ALSA), JACK, PortAudio,
 PulseAudio, OpenAL and the Network Audio System (NAS).

mpg123-dbgsym: debug symbols for mpg123