Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <20170415151935.GA9162@jasmine>
Date: Sat, 15 Apr 2017 11:19:35 -0400
From: Leo Famulari <leo@...ulari.name>
To: oss-security@...ts.openwall.com
Subject: Re: Re: libsamplerate: global buffer overflow in
 calc_output_single (src_sinc.c)

On Sat, Apr 15, 2017 at 01:08:15PM +0200, Agostino Sarubbo wrote:
> On Friday 14 April 2017 12:29:16 Ian Zimmerman wrote:
> > Should this be 0.1.8 and 0.1.9 instead?
> 
> Hi,
> 
> I dind't understand at all what you would to change.
> 
> The affected version is 1.0.8
> The fixed version is 1.0.9

For some reason, the most recent two release versions are 0.1.8 and
0.1.9, but the commit announcing the new version says "1.0.9":

https://github.com/erikd/libsamplerate/commit/f6730d03c3e7660bb6ecad8816f1b09c5825142a

Download attachment "signature.asc" of type "application/pgp-signature" (834 bytes)

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.