==========================================================================
Ubuntu Security Notice USN-4073-1
July 25, 2019
libebml vulnerability
==========================================================================
A security issue affects these releases of Ubuntu and its derivatives:
– Ubuntu 18.04 LTS
– Ubuntu 16.04 LTS
Summary:
libEBML could be made to crash if it opened a specially crafted file.
Software Description:
– libebml: library for the EBML format
Details:
It was discovered that libEBML incorrectly handled certain media files. If
a user were tricked into opening a specially crafted media file, libEBML
could possibly be made to crash, resulting in a denial of service.
Update instructions:
The problem can be corrected by updating your system to the following
package versions:
Ubuntu 18.04 LTS:
libebml4v5 1.3.5-2ubuntu0.1
Ubuntu 16.04 LTS:
libebml4v5 1.3.3-1ubuntu0.1
In general, a standard system update will make all the necessary changes.
References:
https://usn.ubuntu.com/4073-1
CVE-2019-13615
Package Information:
https://launchpad.net/ubuntu/+source/libebml/1.3.5-2ubuntu0.1
https://launchpad.net/ubuntu/+source/libebml/1.3.3-1ubuntu0.1
—–BEGIN PGP SIGNATURE—–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=062e
—–END PGP SIGNATURE—–
—