MGASA-2016-0358

Source
https://advisories.mageia.org/MGASA-2016-0358.html
Import Source
https://advisories.mageia.org/MGASA-2016-0358.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2016-0358
Upstream
  • CVE-2016-1000247
Published
2016-10-25T23:11:42Z
Modified
2026-04-16T06:23:14.009748461Z
Summary
Updated mpg123 packages fix security vulnerability
Details

Jerold Hoong discovered a flaw in the id3 tag processing code of libmpg123. A specially crafted mp3 input file could be used to cause a buffer over-read, resulting in a denial of service (CVE-2016-1000247).

References
Credits

Affected packages

Mageia:5 / mpg123

Package

Name
mpg123
Purl
pkg:rpm/mageia/mpg123?arch=source&distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.20.1-4.1.mga5

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2016-0358.json"