openSUSE Security Update : snack (openSUSE-2017-1277)
Medium Nessus Plugin ID 104616
SynopsisThe remote openSUSE host is missing a security update.
DescriptionThis update for snack fixes the following issues :
Security issue fixed :
- CVE-2012-6303: Heap-based buffer overflow in the GetWavHeader function in generic/jkSoundFile.c in the Snack Sound Toolkit, as used in WaveSurfer 1.8.8p4, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large chunk size in a WAV file. (bnc#793860)
SolutionUpdate the affected snack packages.