Subject: CVS commit: pkgsrc/audio/vorbis-tools
From: Benny Siegert
Date: 2015-12-29 16:12:20
Message id: 20151229151220.978D5FBA5@cvs.NetBSD.org

Log Message:
Fix CVE-2015-6749 in vorbis-tools: Buffer overflow in the aiff_open function in
oggenc/audio.c in vorbis-tools 1.4.0 and earlier allows remote attackers to
cause a denial of service (crash) via a crafted AIFF file.

Bump pkgrevision.

Files:
RevisionActionfile
1.62modifypkgsrc/audio/vorbis-tools/Makefile
1.26modifypkgsrc/audio/vorbis-tools/distinfo
1.1addpkgsrc/audio/vorbis-tools/patches/patch-oggenc_audio.c