(address . bug-guix@gnu.org)
Package: libmad
Version: 0.15.1b
Tags: security
Severity: important
Hello!
I think that package "libmad" should be updated to include fixes for the
following vulnerabilities: CVE-2017-8372, CVE-2017-8373, CVE-2017-8374.
This can be done by applying md_size.diff and replacing
libmad-frame-length.patch with length-check.diff (*.diff are from Debian
GNU/Linux).
Best regards!