Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 139320 - media-libs/libmms includes vulnerable MiMMS code? (CVE-2006-2200)
Summary: media-libs/libmms includes vulnerable MiMMS code? (CVE-2006-2200)
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: High minor (vote)
Assignee: Gentoo Security
URL:
Whiteboard: ~2 [noglsa] Falco
Keywords:
Depends on:
Blocks:
 
Reported: 2006-07-05 08:15 UTC by Sune Kloppenborg Jeppesen (RETIRED)
Modified: 2006-07-21 14:55 UTC (History)
3 users (show)

See Also:
Package list:
Runtime testing required: ---


Attachments
libmms_0.2-7-cumulative.diff (libmms_0.2-7-cumulative.diff,6.29 KB, patch)
2006-07-14 14:32 UTC, Diego Elio Pettenò (RETIRED)
no flags Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2006-07-05 08:15:10 UTC
Stack-based buffer overflow in MiMMS 0.0.9 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via the (1) send_command, (2) string_utf16, (3) get_data, and (4) get_media_packet functions, and possibly other functions.
Comment 1 Raphael Marichez (Falco) (RETIRED) gentoo-dev 2006-07-05 09:02:42 UTC
The debian patch [1] adresses these multiple overflows but our code is really different. A piece of work is needed to have a working patch on Gentoo.

[1] http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=374577

Note that there is no stable ebuild for this one, so i change the severity to "trivial"/~2 (there will be no glsa)
Comment 2 Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2006-07-11 03:08:35 UTC
CC'ing maintainer for advise.
Comment 3 Diego Elio Pettenò (RETIRED) gentoo-dev 2006-07-11 13:23:28 UTC
libmms is under video herd but it's used only by gstreamer, foser is the maintainer and he isn't (AFAIK) in media-video alias.
Comment 4 Diego Elio Pettenò (RETIRED) gentoo-dev 2006-07-14 14:32:36 UTC
Created attachment 91733 [details, diff]
libmms_0.2-7-cumulative.diff

This patch was sent by by Lo
Comment 5 Diego Elio Pettenò (RETIRED) gentoo-dev 2006-07-14 14:32:36 UTC
Created attachment 91733 [details, diff]
libmms_0.2-7-cumulative.diff

This patch was sent by by Loïc Minier on xine-devel and should fix all the vulnerabilities currently released.

If someone from gstreamer herd can patch this..
Comment 6 foser (RETIRED) gentoo-dev 2006-07-20 07:03:09 UTC
the patch looks fine to me, applied it here and it works afaics.

I can't apply this myself before sunday however, so if anyone could do that for me it would be much appreciated.
Comment 7 John N. Laliberte (RETIRED) gentoo-dev 2006-07-20 07:23:54 UTC
i just put libmms-0.2-r1 in portage with the patch.
Comment 8 Stefan Cornelius (RETIRED) gentoo-dev 2006-07-21 14:55:03 UTC
Thanks. Seems like this was never stable, so we can close without a GLSA.