Packages
- lame - MP3 encoding library (frontend)
Details
It was discovered that LAME incorrectly handled certain audio files. A
remote attacker could possibly use this issue to cause a denial of service. Eight
vulnerabilities (CVE-2015-9099, CVE-2015-9100, CVE-2015-9101, CVE-2017-15018,
CVE-2017-11720, CVE-2017-8419, CVE-2017-9412, CVE-2017-15045) only affected Ubuntu 14.04
ESM, two vulnerabilities (CVE-2017-9410 and CVE-2017-9411) only affected Ubuntu
16.04 ESM, and one vulnerability (CVE-2017-15019) affected both Ubuntu 14.04
ESM and Ubuntu 16.04.
It was discovered that LAME incorrectly handled certain audio files. A
remote attacker could possibly use this issue to cause a denial of service. Eight
vulnerabilities (CVE-2015-9099, CVE-2015-9100, CVE-2015-9101, CVE-2017-15018,
CVE-2017-11720, CVE-2017-8419, CVE-2017-9412, CVE-2017-15045) only affected Ubuntu 14.04
ESM, two vulnerabilities (CVE-2017-9410 and CVE-2017-9411) only affected Ubuntu
16.04 ESM, and one vulnerability (CVE-2017-15019) affected both Ubuntu 14.04
ESM and Ubuntu 16.04.
Update instructions
In general, a standard system update will make all the necessary changes.
Learn more about how to get the fixes.The problem can be corrected by updating your system to the following package versions:
Ubuntu Release | Package Version | ||
---|---|---|---|
16.04 xenial | libmp3lame0 – 3.99.5+repack1-9ubuntu0.1~esm2 | ||
lame – 3.99.5+repack1-9ubuntu0.1~esm2 | |||
14.04 trusty | libmp3lame0 – 3.99.5+repack1-3ubuntu1+esm3 | ||
lame – 3.99.5+repack1-3ubuntu1+esm3 |
Reduce your security exposure
Ubuntu Pro provides ten-year security coverage to 25,000+ packages in Main and Universe repositories, and it is free for up to five machines.
References
- CVE-2017-9412
- CVE-2017-9411
- CVE-2017-9410
- CVE-2017-8419
- CVE-2017-15045
- CVE-2017-15019
- CVE-2017-15018
- CVE-2017-13712
- CVE-2017-11720
- CVE-2015-9101
- CVE-2017-9412
- CVE-2017-9411
- CVE-2017-9410
- CVE-2017-8419
- CVE-2017-15045
- CVE-2017-15019
- CVE-2017-15018
- CVE-2017-13712
- CVE-2017-11720
- CVE-2015-9101
- CVE-2015-9100
- CVE-2015-9099