Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3xp5-mpvc-wqpw

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

The vmnc decoder in the gstreamer does not initialize the render canvas, which allows remote attackers to obtain sensitive information as demonstrated by thumbnailing a simple 1 frame vmnc movie that does not draw to the allocated render canvas.

The vmnc decoder in the gstreamer does not initialize the render canvas, which allows remote attackers to obtain sensitive information as demonstrated by thumbnailing a simple 1 frame vmnc movie that does not draw to the allocated render canvas.

EPSS

Процентиль: 79%
0.01283
Низкий

7.5 High

CVSS3

Дефекты

CWE-665

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 9 лет назад

The vmnc decoder in the gstreamer does not initialize the render canvas, which allows remote attackers to obtain sensitive information as demonstrated by thumbnailing a simple 1 frame vmnc movie that does not draw to the allocated render canvas.

CVSS3: 4.3
redhat
около 9 лет назад

The vmnc decoder in the gstreamer does not initialize the render canvas, which allows remote attackers to obtain sensitive information as demonstrated by thumbnailing a simple 1 frame vmnc movie that does not draw to the allocated render canvas.

CVSS3: 7.5
nvd
около 9 лет назад

The vmnc decoder in the gstreamer does not initialize the render canvas, which allows remote attackers to obtain sensitive information as demonstrated by thumbnailing a simple 1 frame vmnc movie that does not draw to the allocated render canvas.

CVSS3: 7.5
debian
около 9 лет назад

The vmnc decoder in the gstreamer does not initialize the render canva ...

suse-cvrf
около 9 лет назад

Security update for gstreamer-plugins-bad

EPSS

Процентиль: 79%
0.01283
Низкий

7.5 High

CVSS3

Дефекты

CWE-665