Debian Security Advisory

DLA-1534-1 adplug -- LTS security update

Date Reported:
07 Oct 2018
Affected Packages:
adplug
Vulnerable:
Yes
Security database references:
In Mitre's CVE dictionary: CVE-2018-17825.
More information:

It was discovered that there was a potential denial of service (DoS) attack due to double-free vulnerability in the adplug sound library.

For Debian 8 Jessie, this issue has been fixed in adplug version 2.2.1+dfsg3-0.1+deb8u1.

We recommend that you upgrade your adplug packages.