Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-9447

Опубликовано: 23 янв. 2017
Источник: nvd
CVSS3: 7.8
CVSS2: 6.8
EPSS Низкий

Описание

The ROM mappings in the NSF decoder in gstreamer 0.10.x allow remote attackers to cause a denial of service (out-of-bounds read or write) and possibly execute arbitrary code via a crafted NSF music file.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:gstreamer_project:gstreamer:0.10.0:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.1:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.2:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.3:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.4:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.5:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.6:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.7:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.8:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.9:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.10:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.11:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.12:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.13:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.14:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.15:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.16:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.17:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.18:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.19:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.20:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.21:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.22:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.23:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.24:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.25:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.26:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.27:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.28:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.29:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.30:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.31:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.32:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.33:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.34:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.35:*:*:*:*:*:*:*
cpe:2.3:a:gstreamer_project:gstreamer:0.10.36:*:*:*:*:*:*:*

EPSS

Процентиль: 64%
0.00483
Низкий

7.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 8 лет назад

The ROM mappings in the NSF decoder in gstreamer 0.10.x allow remote attackers to cause a denial of service (out-of-bounds read or write) and possibly execute arbitrary code via a crafted NSF music file.

CVSS3: 7.5
redhat
почти 9 лет назад

The ROM mappings in the NSF decoder in gstreamer 0.10.x allow remote attackers to cause a denial of service (out-of-bounds read or write) and possibly execute arbitrary code via a crafted NSF music file.

CVSS3: 7.8
debian
больше 8 лет назад

The ROM mappings in the NSF decoder in gstreamer 0.10.x allow remote a ...

CVSS3: 7.8
github
больше 3 лет назад

The ROM mappings in the NSF decoder in gstreamer 0.10.x allow remote attackers to cause a denial of service (out-of-bounds read or write) and possibly execute arbitrary code via a crafted NSF music file.

oracle-oval
больше 8 лет назад

ELSA-2016-2974: gstreamer-plugins-bad-free security update (IMPORTANT)

EPSS

Процентиль: 64%
0.00483
Низкий

7.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-125