Package: libvorbis / 1.3.5-4+deb9u2

CVE-2017-14632.patch Patch series | download
1
2
3
4
5
6
7
8
9
10
--- libvorbis-1.3.5.orig/lib/info.c
+++ libvorbis-1.3.5/lib/info.c
@@ -584,6 +584,7 @@ int vorbis_analysis_headerout(vorbis_dsp
   private_state *b=v->backend_state;
 
   if(!b||vi->channels<=0){
+    b = NULL;
     ret=OV_EFAULT;
     goto err_out;
   }