Описание
The gst_aac_parse_sink_setcaps function in gst/audioparsers/gstaacparse.c in gst-plugins-good in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (invalid memory read and crash) via a crafted audio file.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 5 | gstreamer-plugins-good | Not affected | ||
| Red Hat Enterprise Linux 6 | gstreamer-plugins-good | Not affected | ||
| Red Hat Enterprise Virtualization 3 | mingw-virt-viewer | Will not fix | ||
| Red Hat Enterprise Linux 7 | clutter-gst2 | Fixed | RHSA-2017:2060 | 01.08.2017 |
| Red Hat Enterprise Linux 7 | gnome-video-effects | Fixed | RHSA-2017:2060 | 01.08.2017 |
| Red Hat Enterprise Linux 7 | gstreamer1 | Fixed | RHSA-2017:2060 | 01.08.2017 |
| Red Hat Enterprise Linux 7 | gstreamer1-plugins-bad-free | Fixed | RHSA-2017:2060 | 01.08.2017 |
| Red Hat Enterprise Linux 7 | gstreamer1-plugins-base | Fixed | RHSA-2017:2060 | 01.08.2017 |
| Red Hat Enterprise Linux 7 | gstreamer1-plugins-good | Fixed | RHSA-2017:2060 | 01.08.2017 |
| Red Hat Enterprise Linux 7 | gstreamer-plugins-bad-free | Fixed | RHSA-2017:2060 | 01.08.2017 |
Показывать по
Дополнительная информация
Статус:
5.5 Medium
CVSS3
Связанные уязвимости
The gst_aac_parse_sink_setcaps function in gst/audioparsers/gstaacparse.c in gst-plugins-good in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (invalid memory read and crash) via a crafted audio file.
The gst_aac_parse_sink_setcaps function in gst/audioparsers/gstaacparse.c in gst-plugins-good in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (invalid memory read and crash) via a crafted audio file.
The gst_aac_parse_sink_setcaps function in gst/audioparsers/gstaacpars ...
The gst_aac_parse_sink_setcaps function in gst/audioparsers/gstaacparse.c in gst-plugins-good in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (invalid memory read and crash) via a crafted audio file.
Уязвимость функции gst_aac_parse_sink_setcaps (gst/audioparsers/gstaacparse.c) плагина gst-plugins-good мультимедийного фреймворка Gstreamer, позволяющая нарушителю вызвать отказ в обслуживании
5.5 Medium
CVSS3