[SECURITY] Fedora EPEL 5 Update: taglib-1.6.1-1.el5.2

updates at fedoraproject.org updates at fedoraproject.org
Thu Apr 5 03:03:23 UTC 2012


--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2012-0827
2012-03-20 20:01:08
--------------------------------------------------------------------------------

Name        : taglib
Product     : Fedora EPEL 5
Version     : 1.6.1
Release     : 1.el5.2
URL         : http://developer.kde.org/~wheeler/taglib.html
Summary     : Audio Meta-Data Library
Description :
TagLib is a library for reading and editing the meta-data of several
popular audio formats. Currently it supports both ID3v1 and ID3v2 for MP3
files, Ogg Vorbis comments and ID3 tags and Vorbis comments in FLAC, MPC,
Speex, WavPack, TrueAudio files, as well as APE Tags.

--------------------------------------------------------------------------------
Update Information:

Sync taglib version with el6 (1.6.1), and backport ogg_xiphcomment security patch
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #800559 - CVE-2012-1108 taglib: ogg file with vendorLength field modification causes crash
        https://bugzilla.redhat.com/show_bug.cgi?id=800559
--------------------------------------------------------------------------------

This update can be installed with the "yum" update programs.  Use
su -c 'yum update taglib' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora EPEL GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the epel-package-announce mailing list