Source: flvmeta
Version: 1.2.1-1
Severity: important
Tags: security upstream
Forwarded: https://github.com/noirotm/flvmeta/issues/19
X-Debbugs-Cc: car...@debian.org, Debian Security Team <t...@security.debian.org>

Hi,

The following vulnerability was published for flvmeta.

CVE-2023-36243[0]:
| FLVMeta v1.2.1 was discovered to contain a buffer overflow via the
| xml_on_metadata_tag_only function at dump_xml.c.


If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2023-36243
    https://www.cve.org/CVERecord?id=CVE-2023-36243
[1] https://github.com/noirotm/flvmeta/issues/19
[2] 
https://github.com/noirotm/flvmeta/commit/7b91e5656e27b16639c8de156878c7624346cbd4

Regards,
Salvatore

Reply via email to