Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-9810

Опубликовано: 23 нояб. 2016
Источник: redhat
CVSS3: 4.3
CVSS2: 4.3
EPSS Низкий

Описание

The gst_decode_chain_free_internal function in the flxdex decoder in gst-plugins-good in GStreamer before 1.10.2 allows remote attackers to cause a denial of service (invalid memory read and crash) via an invalid file, which triggers an incorrect unref call.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5gstreamer-plugins-goodWill not fix
Red Hat Enterprise Linux 6gstreamer-plugins-goodWill not fix
Red Hat Enterprise Linux 7clutter-gst2FixedRHSA-2017:206001.08.2017
Red Hat Enterprise Linux 7gnome-video-effectsFixedRHSA-2017:206001.08.2017
Red Hat Enterprise Linux 7gstreamer1FixedRHSA-2017:206001.08.2017
Red Hat Enterprise Linux 7gstreamer1-plugins-bad-freeFixedRHSA-2017:206001.08.2017
Red Hat Enterprise Linux 7gstreamer1-plugins-baseFixedRHSA-2017:206001.08.2017
Red Hat Enterprise Linux 7gstreamer1-plugins-goodFixedRHSA-2017:206001.08.2017
Red Hat Enterprise Linux 7gstreamer-plugins-bad-freeFixedRHSA-2017:206001.08.2017
Red Hat Enterprise Linux 7gstreamer-plugins-goodFixedRHSA-2017:206001.08.2017

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=1401913gstreamer: Invalid memory read in g_type_check_instance_is_fundamentally_a

EPSS

Процентиль: 71%
0.00665
Низкий

4.3 Medium

CVSS3

4.3 Medium

CVSS2

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 9 лет назад

The gst_decode_chain_free_internal function in the flxdex decoder in gst-plugins-good in GStreamer before 1.10.2 allows remote attackers to cause a denial of service (invalid memory read and crash) via an invalid file, which triggers an incorrect unref call.

CVSS3: 5.5
nvd
около 9 лет назад

The gst_decode_chain_free_internal function in the flxdex decoder in gst-plugins-good in GStreamer before 1.10.2 allows remote attackers to cause a denial of service (invalid memory read and crash) via an invalid file, which triggers an incorrect unref call.

CVSS3: 5.5
debian
около 9 лет назад

The gst_decode_chain_free_internal function in the flxdex decoder in g ...

CVSS3: 5.5
github
больше 3 лет назад

The gst_decode_chain_free_internal function in the flxdex decoder in gst-plugins-good in GStreamer before 1.10.2 allows remote attackers to cause a denial of service (invalid memory read and crash) via an invalid file, which triggers an incorrect unref call.

suse-cvrf
почти 9 лет назад

Security update for gstreamer-0_10-plugins-good

EPSS

Процентиль: 71%
0.00665
Низкий

4.3 Medium

CVSS3

4.3 Medium

CVSS2