Candidate: CVE-2013-1980 PublicDate: 2014-02-11 17:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1980 http://www.openwall.com/lists/oss-security/2013/04/22 Description: Buffer overflow in the get_dsmp function in loaders/masi_load.c in libxmp before 4.1.0 allows remote attackers to execute arbitrary code via a crafted MASI file. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Douglas Carmichael Assigned-to: CVSS: Patches_xmp: upstream_xmp: released (4.1.0) hardy_xmp: ignored (reached end-of-life) lucid_xmp: ignored (reached end-of-life) oneiric_xmp: ignored (reached end-of-life) precise_xmp: released (3.4.0-1ubuntu2.12.04.1) quantal_xmp: released (3.4.0-1ubuntu2.12.10.1) raring_xmp: released (3.4.0-1.1ubuntu1.1) saucy_xmp: not-affected (3.4.0-3) devel_xmp: not-affected (3.4.0-3)