Mandriva Linux Security Advisory – Will Drewry of the Google Security Team reported several vulnerabilities in how libvorbis processed audio data. An attacker could create a carefully crafted OGG audio file in such a way that it would cause an application linked to libvorbis to crash or possibly execute arbitrary code when opened.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/66476/MDVSA-2008-102.txt
Source: https://packetstormsecurity.com/files/66476/Mandriva-Linux-Security-Advisory-2008-102.html

