Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-9808

Опубликовано: 13 янв. 2017
Источник: debian
EPSS Низкий

Описание

The FLIC decoder in GStreamer before 1.10.2 allows remote attackers to cause a denial of service (out-of-bounds write and crash) via a crafted series of skip and count pairs.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gst-plugins-good1.0fixed1.10.1-2package
gst-plugins-good1.0fixed1.4.4-2+deb8u2jessiepackage
gst-plugins-good0.10removedpackage
gst-plugins-good0.10fixed0.10.31-3+nmu4+deb8u2jessiepackage
gst-plugins-good0.10fixed0.10.31-3+nmu1+deb7u1wheezypackage

Примечания

  • https://bugzilla.gnome.org/show_bug.cgi?id=774859

  • https://cgit.freedesktop.org/gstreamer/gst-plugins-good/commit/?id=153a8ae752c90d07190ef45803422a4f71ea8bff

  • https://scarybeastsecurity.blogspot.dk/2016/11/0day-poc-incorrect-fix-for-gstreamer.html

EPSS

Процентиль: 91%
0.07194
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 8 лет назад

The FLIC decoder in GStreamer before 1.10.2 allows remote attackers to cause a denial of service (out-of-bounds write and crash) via a crafted series of skip and count pairs.

CVSS3: 7.5
redhat
больше 8 лет назад

The FLIC decoder in GStreamer before 1.10.2 allows remote attackers to cause a denial of service (out-of-bounds write and crash) via a crafted series of skip and count pairs.

CVSS3: 7.5
nvd
больше 8 лет назад

The FLIC decoder in GStreamer before 1.10.2 allows remote attackers to cause a denial of service (out-of-bounds write and crash) via a crafted series of skip and count pairs.

CVSS3: 7.5
github
больше 3 лет назад

The FLIC decoder in GStreamer before 1.10.2 allows remote attackers to cause a denial of service (out-of-bounds write and crash) via a crafted series of skip and count pairs.

oracle-oval
больше 8 лет назад

ELSA-2017-0020: gstreamer1-plugins-good security update (MODERATE)

EPSS

Процентиль: 91%
0.07194
Низкий