Описание
GStreamer before 1.18.4 might access already-freed memory in error code paths when demuxing certain malformed Matroska files.
Ссылки
- Issue TrackingPatchThird Party Advisory
- Vendor Advisory
- Mailing ListThird Party Advisory
- Third Party Advisory
- Third Party Advisory
- Issue TrackingPatchThird Party Advisory
- Vendor Advisory
- Mailing ListThird Party Advisory
- Third Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 0.10.0 (включая) до 1.18.4 (исключая)
cpe:2.3:a:gstreamer_project:gstreamer:*:*:*:*:*:*:*:*
Конфигурация 2
Одно из
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
EPSS
Процентиль: 42%
0.00199
Низкий
7.8 High
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-416
CWE-416
Связанные уязвимости
CVSS3: 7.8
ubuntu
больше 4 лет назад
GStreamer before 1.18.4 might access already-freed memory in error code paths when demuxing certain malformed Matroska files.
CVSS3: 7.8
redhat
больше 4 лет назад
GStreamer before 1.18.4 might access already-freed memory in error code paths when demuxing certain malformed Matroska files.
CVSS3: 7.8
debian
больше 4 лет назад
GStreamer before 1.18.4 might access already-freed memory in error cod ...
EPSS
Процентиль: 42%
0.00199
Низкий
7.8 High
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-416
CWE-416