Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Date: Sat, 15 Apr 2017 21:33:18 -0700
From: Ian Zimmerman <itz@...mate.net>
To: oss-security@...ts.openwall.com
Subject: Re: libsamplerate: global buffer overflow in calc_output_single
 (src_sinc.c)

On 2017-04-15 14:38, Nick Boyce wrote:

> there is no reference to any version numbers of the form 1.0.x, but
> only numbers such as 0.1.8 (the last release [dated 15.Aug.2011]
> mentioned in the changelog as I write)
> http://www.mega-nerd.com/SRC/ChangeLog
> and 0.1.9 (the latest version actually available for download):
> http://www.mega-nerd.com/SRC/download.html

The stable gentoo version is also 0.1.9

-- 
Please *no* private Cc: on mailing lists and newsgroups
Personal signed mail: please _encrypt_ and sign
Don't clear-text sign:
http://primate.net/~itz/blog/the-problem-with-gpg-signatures.html

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.