DSA-1850-1

NameDSA-1850-1
SourceDebian
Descriptionlibmodplug - arbitrary code execution
ReferencesCVE-2009-1438, CVE-2009-1513
Debian/oldstablepackage libmodplug is fixed in oldstable-security.
Debian/stablenot vulnerable
Debian/testingnot known to be vulnerable
Debian/unstablenot known to be vulnerable.

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
libmodplug (PTS)etch1:0.7-5.2vulnerable
etch (security)1:0.7-5.2+etch1fixed
lenny, lenny (security)1:0.8.4-1+lenny1fixed

The next table lists affected binary packages.

Binary PackageReleaseVersionStatusArchitecures
libmodplug-devetch1:0.7-5.2vulnerableall
etch (security)1:0.7-5.2+etch1fixedall
lenny, lenny (security)1:0.8.4-1+lenny1fixedall
libmodplug0c2etch1:0.7-5.2vulnerablealpha, amd64, arm, hppa, i386, ia64, mips, mipsel, powerpc, s390, sparc
etch (security)1:0.7-5.2+etch1fixedalpha, amd64, arm, hppa, i386, ia64, mips, mipsel, powerpc, s390, sparc
lenny, lenny (security)1:0.8.4-1+lenny1fixedalpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390, sparc

The information above is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
libmodplugsourceetch1:0.7-5.2+etch1unknown
libmodplugsourcelenny1:0.8.4-1+lenny1unknown

Search for package or bug name: Reporting problems

Home - Testing Security Team - Debian Security - Imprint