An out-of-bounds write vulnerability when handling crafted streams was discovered in mpg123, a real time MPEG 1.0/2.0/2.5 audio player/decoder for layers 1, 2 and 3, which could result in the execution of arbitrary code.
https://security-tracker.debian.org/tracker/DSA-5811-1
Continue reading...
https://security-tracker.debian.org/tracker/DSA-5811-1
Continue reading...

