libcdio 2.1.0-4.2ubuntu1 source package in Ubuntu

Changelog

libcdio (2.1.0-4.2ubuntu1) oracular; urgency=medium

  * SECURITY UPDATE: buffer overflow
    - debian/patches/CVE-2024-36600-1.patch: Allocates space for
      growth and additional buffer in lib/iso9660/rock.c
    - debian/patches/CVE-2024-36600-2.patch: Limits the maximum read
      count to prevent an overflow in lib/driver/_cdio_stdio.c
    - debian/patches/CVE-2024-36600-3.patch: Adds input validation to
      unicode16_decode function in lib/udf/udf_fs.c
    - debian/patches/CVE-2024-36600-4.patch: Adds bounds checking for
      directory buffer size and total size calculation in
      lib/iso9660/iso9660_fs.c
    - debian/patches/CVE-2024-36600-5.patch: Fixes overflow in iso9660
      dir read (32-bit) in lib/iso9660/iso9660_fs.c
    - debian/patches/CVE-2024-36600-6.patch: Checks the validity of
      i_extended_attr member in udf_get_lba() in lib/udf/udf_fs.c
    - debian/patches/CVE-2024-36600-7.patch: Adds 32-bit size test
      only when needed in lib/iso9660/iso9660_fs.c
    - CVE-2024-36600

 -- Bruce Cable <email address hidden>  Mon, 01 Jul 2024 14:22:03 +1000

Upload details

Uploaded by:
Bruce Cable
Sponsored by:
Alex Murray
Uploaded to:
Oracular
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
libs
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Plucky release main libs
Oracular release main libs

Downloads

File Size SHA-256 Checksum
libcdio_2.1.0.orig.tar.bz2 1.4 MiB 78e246d591b1e8907943b844c68019c5b5a75a6d8cb1aa49a7d659b4ad95838b
libcdio_2.1.0-4.2ubuntu1.debian.tar.xz 16.2 KiB e5288945a64465d8ef1163f0d8910e5f37eeccfad975bc37247ca22d705825be
libcdio_2.1.0-4.2ubuntu1.dsc 2.3 KiB b01c6716df41c1f04f1a5baf24fdb98dbb75e1eb3f5f020c6bd830361b63dc42

View changes file

Binary packages built by this source

libcdio++-dev: C++ library to read and control CD-ROM (development files)

 This package contains development files (headers and static library)
 for the libcdio++ library.
 .
 This library is to encapsulate CD-ROM reading and
 control. Applications wishing to be oblivious of the OS- and
 device-dependant properties of a CD-ROM can use this library.
 .
 Some support for disk image types like BIN/CUE and NRG is available,
 so applications that use this library also have the ability to read
 disc images as though they were CD's.

libcdio++1t64: C++ library to read and control CD-ROM

 This C++ library is to encapsulate CD-ROM reading and
 control. Applications wishing to be oblivious of the OS- and
 device-dependant properties of a CD-ROM can use this library.
 .
 Some support for disk image types like BIN/CUE and NRG is available,
 so applications that use this library also have the ability to read
 disc images as though they were CD's.

libcdio++1t64-dbgsym: debug symbols for libcdio++1t64
libcdio-dev: library to read and control CD-ROM (development files)

 This package contains development files (headers and static library)
 for the libcdio library.
 .
 This library is to encapsulate CD-ROM reading and
 control. Applications wishing to be oblivious of the OS- and
 device-dependant properties of a CD-ROM can use this library.
 .
 Some support for disk image types like BIN/CUE and NRG is available,
 so applications that use this library also have the ability to read
 disc images as though they were CD's.

libcdio-utils: sample applications based on the CDIO libraries

 This package contains a collection of small libcdio-based tools:
  * cd-drive show CD-ROM drive characteristics
  * cd-info show information about a CD or CD-image
  * cd-paranoia an audio CD ripper
  * cd-read read information from a CD or CD-image
  * cdda-player a simple curses-based audio CD player
  * iso-info show information about an ISO 9660 image
  * iso-read read portions of an ISO 9660 image
  * mmc-tool issue low-level commands to a CD drive

libcdio-utils-dbgsym: debug symbols for libcdio-utils
libcdio19t64: library to read and control CD-ROM

 This library is to encapsulate CD-ROM reading and
 control. Applications wishing to be oblivious of the OS- and
 device-dependant properties of a CD-ROM can use this library.
 .
 Some support for disk image types like BIN/CUE and NRG is available,
 so applications that use this library also have the ability to read
 disc images as though they were CD's.

libcdio19t64-dbgsym: debug symbols for libcdio19t64
libiso9660++-dev: C++ library to work with ISO9660 filesystems (development files)

 This package contains C++ development files (headers and static library)
 for the libiso9660 library.
 .
 This library is made to read and write ISO9660 filesystems; those
 filesystems are mainly used on CDROMs.

libiso9660++0t64: C++ library to work with ISO9660 filesystems

 This C++ library is made to read and write ISO9660 filesystems; those
 filesystems are mainly used on CDROMs.

libiso9660++0t64-dbgsym: debug symbols for libiso9660++0t64
libiso9660-11t64: library to work with ISO9660 filesystems

 This library is made to read and write ISO9660 filesystems; those
 filesystems are mainly used on CDROMs.

libiso9660-11t64-dbgsym: debug symbols for libiso9660-11t64
libiso9660-dev: library to work with ISO9660 filesystems (development files)

 This package contains development files (headers and static library)
 for the libiso9660 library.
 .
 This library is made to read and write ISO9660 filesystems; those
 filesystems are mainly used on CDROMs.

libudf-dev: library to work with UDF filesystems (development files)

 This package contains development files (headers and static library)
 for the libudf library.
 .
 This library is made to read and write UDF filesystems; those
 filesystems are mainly used on DVDs.

libudf0t64: library to work with UDF filesystems

 This library is made to read and write UDF filesystems; those
 filesystems are mainly used on DVDs.

libudf0t64-dbgsym: debug symbols for libudf0t64