[Bug 2087775] Re: heap-buffer overflow in midicsv.c:123

2025-02-02 Thread Launchpad Bug Tracker
[Expired for midicsv (Ubuntu) because there has been no activity for 60 days.] ** Changed in: midicsv (Ubuntu) Status: Incomplete => Expired -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/208777

[Bug 2087775] Re: heap-buffer overflow in midicsv.c:123

2024-12-03 Thread Alex Murray
To patch CVEs in Ubuntu we generally require them to first be fixed by the upstream project and then we can integrate the patch in our releases. In this case since the upstream seems to no longer exist, I am not sure there is a clear way forward at this time. If a patch is developed then we can loo

[Bug 2087775] Re: heap-buffer overflow in midicsv.c:123

2024-11-11 Thread Jaehoon Jang
I tried to email b...@fourmilab.ch, but it bounced back with the message "Address not found." After searching, it seems that John Walker, the main maintainer of the Fourmilab, has passed away and is no longer in charge. -- You received this bug notification because you are a member of Ubuntu B

[Bug 2087775] Re: heap-buffer overflow in midicsv.c:123

2024-11-10 Thread Mark Esler
Have you reported this upstream? To Fourmilab, the supplier and author of the code? -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2087775 Title: heap-buffer overflow in midicsv.c:123 To manage noti

[Bug 2087775] Re: heap-buffer overflow in midicsv.c:123

2024-11-10 Thread Jaehoon Jang
** Attachment added: "poc0" https://bugs.launchpad.net/ubuntu/+source/midicsv/+bug/2087775/+attachment/5836112/+files/poc0 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2087775 Title: heap-buffe