Gentoo: mpg123 Buffer overflow vulnerability
Summary
GENTOO LINUX SECURITY ANNOUNCEMENT 200309-17 GENTOO BUG # : 26787
DESCRIPTION
mpg123 contains a heap based buffer overflow that would allow an remote attacker to execute arbitrary code on the victims machine.
SOLUTION
it is recommended that all Gentoo Linux users who are running media-sound/mpg123 upgrade to a fixed version.
make sure that the version to be installed is either one of 0.59r-r3 (stable) or 0.59s-r1 (masked).
emerge sync emerge mpg123 -p emerge mpg123 emerge clean
Resolution
References
Availability
Concerns
Background