MDVA-2010:227 : libalsa2

high Nessus Plugin ID 50666

Synopsis

The remote Mandriva host is missing one or more security-related patches.

Description

This is a bugfix and maintenance update bundle that addresses various issues in a number of packages.

* Some thread-related problems were found in the libalsa2 library that could cause segmentation faults in some audio applications (one example being phonon when used with gstreamer output and accessing pulseaudio via ALSA plugin). The updated libalsa2 package contains an upstream fix to correct this problem.

On a related note the PulseAudio package has also been updated to include several important upstream bugfixes including:

* Much improved handling of capture stream latencies and timing

* Client side XCB implementation to replace Xlib (and thus solve some thread-related issues).

* Support for the a52 alsa plugin when combined with an appropriate ~/.asoundrc file.

* Several bugs in the pulseaudio plugin for the GStreamer audio framework could lead to application crashes, for instance in pidgin.
This update contains fixes for memory allocation and lock handling of the pulseaudio plugin.

Solution

Update the affected package(s).

See Also

http://www.mandriva.com/security/advisories?name=MDVA-2010:227

Plugin Details

Severity: High

ID: 50666

File Name: mandriva_MDVA-2010-227.nasl

Version: 1.9

Type: local

Published: 11/22/2010

Updated: 1/6/2021

Supported Sensors: Nessus

Vulnerability Information

CPE: cpe:/o:mandriva:linux

Required KB Items: Host/Mandrake/release, Host/Mandrake/rpm-list

Patch Publication Date: 11/20/2010