Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-1631

Опубликовано: 05 мая 2020
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2020-1631: GStreamer, libmad, and SDL security, bug fix, and enhancement update (LOW)

gstreamer1 [1.16.1-2]

  • Update to 1.16.2 for correctly pick up for side gating
  • Resolves: rhbz#1756299

[1.16.1-1]

  • Update to 1.16.1
  • Enable libcap for the ptp helper permissions
  • Resolves: rhbz#1756299

gstreamer1-plugins-bad-free [1.16.1-1]

  • Update to 1.16.1
  • Remove upstreamed patches
  • Remove dependency on removed package
  • Add sctp and closedcaption plugins
  • The vcdsrc plugin was removed
  • Resolves: rhbz#1756299

gstreamer1-plugins-base [1.16.1-1]

  • Update to 1.16.1
  • Resolves: rhbz#1756299

gstreamer1-plugins-good [1.16.1-1]

  • Update to 1.16.1
  • enable cairo plugins
  • Resolves: rhbz#1756299

gstreamer1-plugins-ugly-free [1.16.1-1]

  • Update to 1.16.1
  • Only enable mpeg2dec on Fedora
  • Resolves: rhbz#1756299

[1.16.0-3]

  • Conflicts: gstreamer1-plugins-ugly < 1.16.0-2

[1.16.0-2]

  • Enable mpeg2dec plugin (#1709470)

libmad [0.15.1b-25]

  • Add patches to avoid various buffer overruns
  • Fixes CVE-2018-7263
  • Resolves: rhbz#1547507

orc [0.4.28-3]

  • x86: add endbr32 and endbr64 instructions
  • Resolves: rhbz#1693292

SDL [1.2.15-37]

  • Rebuild
  • Resolves: rhbz#1756279

SDL2 [2.0.10-2]

  • Fix CVE-2019-13616 SDL: heap-based buffer overflow in SDL blit functions in video/SDL_blit*.c
  • Resolves: rhbz#1756279

[2.0.10-1]

  • Update to 2.0.10
  • Resolves: rhbz#1751780

[2.0.9-3]

  • use khrplatform defines, not ptrdiff_t

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

SDL

1.2.15-37.el8

SDL-devel

1.2.15-37.el8

SDL2

2.0.10-2.el8

SDL2-devel

2.0.10-2.el8

SDL2-static

2.0.10-2.el8

gstreamer1

1.16.1-2.el8

gstreamer1-devel

1.16.1-2.el8

gstreamer1-plugins-bad-free

1.16.1-1.el8

gstreamer1-plugins-bad-free-devel

1.16.1-1.el8

gstreamer1-plugins-base

1.16.1-1.el8

gstreamer1-plugins-base-devel

1.16.1-1.el8

gstreamer1-plugins-good

1.16.1-1.el8

gstreamer1-plugins-good-gtk

1.16.1-1.el8

gstreamer1-plugins-ugly-free

1.16.1-1.el8

libmad

0.15.1b-25.el8

libmad-devel

0.15.1b-25.el8

orc

0.4.28-3.el8

orc-compiler

0.4.28-3.el8

orc-devel

0.4.28-3.el8

Oracle Linux x86_64

SDL

1.2.15-37.el8

SDL-devel

1.2.15-37.el8

SDL2

2.0.10-2.el8

SDL2-devel

2.0.10-2.el8

SDL2-static

2.0.10-2.el8

gstreamer1

1.16.1-2.el8

gstreamer1-devel

1.16.1-2.el8

gstreamer1-plugins-bad-free

1.16.1-1.el8

gstreamer1-plugins-bad-free-devel

1.16.1-1.el8

gstreamer1-plugins-base

1.16.1-1.el8

gstreamer1-plugins-base-devel

1.16.1-1.el8

gstreamer1-plugins-good

1.16.1-1.el8

gstreamer1-plugins-good-gtk

1.16.1-1.el8

gstreamer1-plugins-ugly-free

1.16.1-1.el8

libmad

0.15.1b-25.el8

libmad-devel

0.15.1b-25.el8

orc

0.4.28-3.el8

orc-compiler

0.4.28-3.el8

orc-devel

0.4.28-3.el8

Связанные CVE

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 7 лет назад

The mad_decoder_run() function in decoder.c in Underbit libmad through 0.15.1b allows remote attackers to cause a denial of service (SIGABRT because of double free or corruption) or possibly have unspecified other impact via a crafted file. NOTE: this may overlap CVE-2017-11552.

CVSS3: 3.3
redhat
больше 7 лет назад

The mad_decoder_run() function in decoder.c in Underbit libmad through 0.15.1b allows remote attackers to cause a denial of service (SIGABRT because of double free or corruption) or possibly have unspecified other impact via a crafted file. NOTE: this may overlap CVE-2017-11552.

CVSS3: 9.8
nvd
больше 7 лет назад

The mad_decoder_run() function in decoder.c in Underbit libmad through 0.15.1b allows remote attackers to cause a denial of service (SIGABRT because of double free or corruption) or possibly have unspecified other impact via a crafted file. NOTE: this may overlap CVE-2017-11552.

CVSS3: 9.8
msrc
3 месяца назад

Описание отсутствует

CVSS3: 9.8
debian
больше 7 лет назад

The mad_decoder_run() function in decoder.c in Underbit libmad through ...

Уязвимость ELSA-2020-1631