Описание
The _parse_pat function in the mpegts parser in GStreamer before 1.10.2 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted file.
A NULL pointer dereference flaw was found in GStreamer's MPEG-TS parser. A remote attacker could use this flaw to cause an application using GStreamer to crash.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 6 | gstreamer-plugins-bad-free | Not affected | ||
Red Hat Enterprise Linux 7 | gstreamer-plugins-bad-free | Not affected | ||
Red Hat Enterprise Virtualization 3 | mingw-virt-viewer | Not affected | ||
Red Hat Enterprise Linux 7 | gstreamer1-plugins-bad-free | Fixed | RHSA-2017:0021 | 05.01.2017 |
Показывать по
Дополнительная информация
Статус:
EPSS
4.3 Medium
CVSS3
4.3 Medium
CVSS2
Связанные уязвимости
The _parse_pat function in the mpegts parser in GStreamer before 1.10.2 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted file.
The _parse_pat function in the mpegts parser in GStreamer before 1.10.2 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted file.
The _parse_pat function in the mpegts parser in GStreamer before 1.10. ...
The _parse_pat function in the mpegts parser in GStreamer before 1.10.2 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted file.
EPSS
4.3 Medium
CVSS3
4.3 Medium
CVSS2