Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
Name: libsndfile1 | Distribution: SUSE Linux Enterprise 15 |
Version: 1.0.28 | Vendor: SUSE LLC <https://www.suse.com/> |
Release: 5.5.1 | Build date: Fri Jul 6 17:02:44 2018 |
Group: System/Libraries | Build host: nebbiolo |
Size: 659616 | Source RPM: libsndfile-1.0.28-5.5.1.src.rpm |
Packager: https://www.suse.com/ | |
Url: http://www.mega-nerd.com/libsndfile | |
Summary: A Library to Handle Various Audio File Formats |
Libsndfile is a C library for reading and writing sound files, such as AIFF, AU, and WAV files, through one standard interface. It can currently read and write 8, 16, 24, and 32-bit PCM files as well as 32-bit floating point WAV files and a number of compressed formats.
LGPL-2.1-or-later
* Fri Jul 06 2018 tiwai@suse.de - Fix buffer overflow in sndfile-deinterlace, which isn't really a security issue (bsc#1100167, CVE-2018-13139): sndfile-deinterlace-channels-check.patch * Fri Jun 08 2018 tiwai@suse.de - Use license file tag * Fri Jun 08 2018 tiwai@suse.de - Fix potential overflow in d2alaw_array() (CVE-2017-17456, bsc#1071777): libsndfile-CVE-2017-17456-alaw-range-check.patch - Fix potential overflow in d2ulaw_array() (CVE-2017-17457, bsc#1071767): libsndfile-CVE-2017-17457-ulaw-range-check.patch * Tue Dec 19 2017 tiwai@suse.de - Fix VUL-0: divide-by-zero error exists in the function double64_init() in double64.c (CVE-2017-14634, bsc#1059911): 0030-double64_init-Check-psf-sf.channels-against-upper-bo.patch - Tentative fix for VUL-0: out of bounds read in the function d2alaw_array() in alaw.c (CVE-2017-14245, bsc#1059912) and VUL-0: out of bounds read in the function d2ulaw_array() in ulaw.c (CVE-2017-14246, bsc#1059913): 0031-sfe_copy_data_fp-check-value-of-max-variable.patch * Tue Aug 08 2017 tiwai@suse.de - Fix Heap-based Buffer Overflow in the psf_binheader_writef (CVE-2017-12562, bsc#1052476): 0020-src-common.c-Fix-heap-buffer-overflows-when-writing-.patch * Tue Jun 13 2017 tiwai@suse.de - Fix out-of-bounds read memory access in the aiff_read_chanmap() (CVE-2017-6892, bsc#1043978): 0010-src-aiff.c-Fix-a-buffer-read-overflow.patch * Tue May 02 2017 tiwai@suse.de - Fix FLAC buffer overflows (CVE-2017-8361 CVE-2017-8363 CVE-2017-8365 CVE-2017-8362 bsc#1036944 bsc#1036945 bsc#1036946 bsc#1036943): 0001-FLAC-Fix-a-buffer-read-overrun.patch 0002-src-flac.c-Fix-a-buffer-read-overflow.patch * Mon Apr 10 2017 tiwai@suse.de - Update to version 1.0.27: * Fix a seek regression in 1.0.26 * Add metadata read/write for CAF and RF64 * FIx PAF endian-ness issue - Update to version 1.0.28 * Fix buffer overruns in FLAC and ID3 handling code (CVE-2017-7585, CVE-2017-7586, bsc#1033054, bsc#1033053) * Reduce default header memory requirements * Fix detection of Large File Support for 32 bit systems. - Obsoleted patch: libsndfile-psf_strlcpy_crlf-fix-CVE-2015-8075.patch * Tue May 10 2016 tom.mbrt@googlemail.com - Fix spec file to enable builds on non opensuse OS * Mon Nov 23 2015 tiwai@suse.de - Update to version 1.0.26: * Fix for CVE-2014-9496, CVE-2014-9756 and CVE-2015-7805. * Add ALAC/CAF support. Minor bug fixes and improvements. - Refreshed patches: sndfile-ocloexec.patch libsndfile-psf_strlcpy_crlf-fix-CVE-2015-8075.patch - Removed obsoleted patches: libsndfile-example-fix.diff libsndfile-fix-header-read-CVE-2015-7805.patch libsndfile-paf-zero-division-fix.diff libsndfile-src-common.c-Fix-a-header-parsing-bug.patch libsndfile-src-file_io.c-Prevent-potential-divide-by-zero.patch sndfile-src-sd2.c-Fix-segfault-in-SD2-RSRC-parser.patch sndfile-src-sd2.c-Fix-two-potential-buffer-read-overflows.patch * Wed Nov 04 2015 tiwai@suse.de - VUL-0: libsndfile 1.0.25 heap overflow (CVE-2015-7805, bsc#953516) libsndfile-src-common.c-Fix-a-header-parsing-bug.patch libsndfile-fix-header-read-CVE-2015-7805.patch - VUL-0: libsndfile 1.0.25 heap overflow (CVE-2015-8075, bsc#953519) libsndfile-psf_strlcpy_crlf-fix-CVE-2015-8075.patch - Fix the build with SLE11-SP3 due to AM_SILENT_RULE macro * Wed Nov 04 2015 tiwai@suse.de - VUL-1: libsndfile DoS/divide-by-zero (CVE-2014-9756, bsc#953521): libsndfile-src-file_io.c-Prevent-potential-divide-by-zero.patch * Sat Mar 21 2015 mpluskal@suse.com - Cleanup spec file with spec-cleaner - Add gpg signature - Remove old ppc provides/obsoletes * Wed Jan 07 2015 tiwai@suse.de - VUL-0: two buffer read overflows in sd2_parse_rsrc_fork() (CVE-2014-9496, bnc#911796): backported upstream fix patches sndfile-src-sd2.c-Fix-segfault-in-SD2-RSRC-parser.patch sndfile-src-sd2.c-Fix-two-potential-buffer-read-overflows.patch * Mon Apr 15 2013 mmeister@suse.com - Added url as source. Please see http://en.opensuse.org/SourceUrls * Fri Dec 02 2011 coolo@suse.com - add libtool as buildrequire to avoid implicit dependency * Thu Nov 24 2011 tiwai@suse.de - add missing provides/obsoletes for libsndfile -> libsndfile1 rename (bnc#732565) * Thu Nov 24 2011 crrodriguez@opensuse.org - use O_CLOEXEC in library code. * Tue Nov 22 2011 coolo@suse.com - fix devel dependency * Mon Nov 21 2011 jengelh@medozas.de - Remove redundant/unwanted tags/section (cf. specfile guidelines) * Wed Aug 24 2011 crrodriguez@opensuse.org - Enable speex support - run make check * Fri Jul 29 2011 tiwai@suse.de - Fix zero-division in PAF parser (bnc#708988) * Thu Jul 28 2011 crrodriguez@opensuse.org - Remove -fno-strict-aliasing from cflags, no longer needed - disable automake silent rules. * Mon Jul 18 2011 tiwai@suse.de - updated to version 1.0.25: Fix for Secunia Advisory SA45125 (CVE-2011-2696, bnc#705681) Minor bug fixes and improvements * Wed Mar 23 2011 oliver.bengs@opensuse.org - Update to version 1.0.24 - Upstream changes : * WAV files are now written with an 18 byte u-law and A-law fmt chunk * A document on virtual I/O functionality was added * Two new methods were added in sndfile.hh * A fix was made for a non-zero SSND offset values on AIFF * Minor bug fixes and improvements were done * Mon Oct 11 2010 oliver.bengs@opensuse.org - Update to version 1.0.23 - Upstream changes : * configure.ac src/version-metadata.rc.in src/Makefile.am Add version string resources to the windows DLL. * doc/api.html Update to add missing SF_FORMAT_* values. Closed Debian bug #545257. * NEWS README configure.ac doc/*.html Updates for 1.0.23 release. * Other minor bug fixes * Fri Oct 08 2010 davejplater@gmail.com - Update to version 1.0.22 - Upstream changes : * Bunch of minor bug fixes. * Mon Aug 16 2010 tiwai@suse.de - updated to version 1.0.21: * Bunch of minor bug fixes. * including VUL-1 divide-by-zero fix (bnc#631379) * Wed Dec 16 2009 jengelh@medozas.de - add baselibs.conf as a source - enable parallel building * Wed Jun 03 2009 dmueller@suse.de - explicitely enable sqlite support to avoid random flipping * Fri May 15 2009 tiwai@suse.de - updated to version 1.0.20: * Fix for potential heap overflow - enable ogg/vorbis support * Fri Apr 24 2009 tiwai@suse.de - built progs subpackage from an individual spec file to cut the circular dependency with jack. * Wed Mar 04 2009 tiwai@suse.de - updated to version 1.0.19: * Fix for CVE-2009-0186 (bnc#481769 - VUL-0: libsndfile CAF Processing Integer Overflow Vulnerability) * Huge number of minor fixes as a result of static analysis - remove INSTALL file from filelist
/usr/lib64/libsndfile.so.1 /usr/lib64/libsndfile.so.1.0.28
Generated by rpm2html 1.8.1
Fabrice Bellet, Tue Jul 9 13:44:15 2024