--- - branch: MAIN date: Tue Dec 29 15:12:20 UTC 2015 files: - new: '1.62' old: '1.61' path: pkgsrc/audio/vorbis-tools/Makefile pathrev: pkgsrc/audio/vorbis-tools/Makefile@1.62 type: modified - new: '1.26' old: '1.25' path: pkgsrc/audio/vorbis-tools/distinfo pathrev: pkgsrc/audio/vorbis-tools/distinfo@1.26 type: modified - new: '1.1' old: '0' path: pkgsrc/audio/vorbis-tools/patches/patch-oggenc_audio.c pathrev: pkgsrc/audio/vorbis-tools/patches/patch-oggenc_audio.c@1.1 type: added id: 20151229T151220Z.fa98e410723687e2187176c526194b8c747cbab2 log: | Fix CVE-2015-6749 in vorbis-tools: Buffer overflow in the aiff_open function in oggenc/audio.c in vorbis-tools 1.4.0 and earlier allows remote attackers to cause a denial of service (crash) via a crafted AIFF file. Bump pkgrevision. module: pkgsrc subject: 'CVS commit: pkgsrc/audio/vorbis-tools' unixtime: '1451401940' user: bsiegert