An issue was discovered in libgig through 20200507. A heap-buffer-overflow exists in the function RIFF::List::GetSubList located in RIFF.cpp. It allows an attacker to cause code Execution.
{
"binaries": [
{
"binary_version": "4.1.0~repack-2",
"binary_name": "gigtools"
},
{
"binary_version": "4.1.0~repack-2",
"binary_name": "libakai0"
},
{
"binary_version": "4.1.0~repack-2",
"binary_name": "libgig-dev"
},
{
"binary_version": "4.1.0~repack-2",
"binary_name": "libgig8"
}
]
}{
"binaries": [
{
"binary_version": "4.2.0~ds1-2build1",
"binary_name": "gigtools"
},
{
"binary_version": "4.2.0~ds1-2build1",
"binary_name": "libakai0"
},
{
"binary_version": "4.2.0~ds1-2build1",
"binary_name": "libgig-dev"
},
{
"binary_version": "4.2.0~ds1-2build1",
"binary_name": "libgig9"
}
]
}{
"binaries": [
{
"binary_version": "4.3.0~ds1-2.1build1",
"binary_name": "gigtools"
},
{
"binary_version": "4.3.0~ds1-2.1build1",
"binary_name": "libakai0t64"
},
{
"binary_version": "4.3.0~ds1-2.1build1",
"binary_name": "libgig-dev"
},
{
"binary_version": "4.3.0~ds1-2.1build1",
"binary_name": "libgig10t64"
}
]
}