From e75592a96c7f7154854d39806fc1866a2ccaf7ad Mon Sep 17 00:00:00 2001 From: ltx Date: Thu, 14 May 2020 21:52:32 +0800 Subject: [PATCH] fix memory leak found by fuzz --- wavpack.spec | 10 +++++++++- 1 file changed, 9 insertions(+), 1 deletion(-) diff --git a/wavpack.spec b/wavpack.spec index 49521cc..ac1b7e0 100644 --- a/wavpack.spec +++ b/wavpack.spec @@ -1,6 +1,6 @@ Name: wavpack Version: 5.1.0 -Release: 11 +Release: 12 Summary: Hybrid Lossless Wavefile Compressor License: BSD Url: http://www.wavpack.com/ @@ -14,8 +14,10 @@ Patch0004: wavpack-0005-issue-30-issue-31-issue-32-no-multiple-format-chunk Patch0005: wavpack-CVE-2019-11498.patch # make sure sample rate is specified and non-zero in DFF files Patch0006: CVE-2018-19841.patch +Patch0007: fix-memory-leak-on-opening-corrupted-files.patch Patch6000: CVE-2018-19840.patch + BuildRequires: autoconf automake libtool %description @@ -72,6 +74,12 @@ autoreconf -ivf %{_mandir}/man1/*.1* %changelog +* Sat May 14 2020 lutianxiong - 5.1.0-12 +- Type:bugfix +- ID:NA +- SUG:NA +- Fix memory leak on opening corrupted files + * Sat Mar 14 2020 wangzhishun - 5.1.0-11 - Make sure sample rate is specified and non-zero in DFF files - Fix potential out-of-bounds heap read