http://research.eeye.com/html/advisories/published/AD2007111(...)
Cependant, les failles ont été corrigées dans la libFLAC en septembre :
Vendor Status:
libFLAC version 1.2.1 was released in September, 2007, fixing these
vulnerabilities for most vulnerable applications. Unfortunately, many
vendors that were using libFLAC within their media applications or using
their own homegrown FLAC file parsers had not been informed that their
FLAC file parser was vulnerable. Because of that, the release of this
advisory was postponed until all vulnerable (…)