Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 16

Количество 16

ubuntu логотип

CVE-2024-4453

больше 2 лет назад

GStreamer EXIF Metadata Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the parsing of EXIF metadata. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. . Was ZDI-CAN-23896.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2024-4453

больше 2 лет назад

GStreamer EXIF Metadata Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the parsing of EXIF metadata. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. . Was ZDI-CAN-23896.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2024-4453

больше 2 лет назад

GStreamer EXIF Metadata Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the parsing of EXIF metadata. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. . Was ZDI-CAN-23896.

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2024-4453

больше 2 лет назад

GStreamer EXIF Metadata Parsing Integer Overflow Remote Code Execution ...

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1945-1

больше 2 лет назад

Security update for gstreamer-plugins-base

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1910-1

больше 2 лет назад

Security update for gstreamer-plugins-base

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1893-1

больше 2 лет назад

Security update for gstreamer-plugins-base

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1886-1

больше 2 лет назад

Security update for gstreamer-plugins-base

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1882-1

больше 2 лет назад

Security update for gstreamer-plugins-base

EPSS: Низкий
rocky логотип

RLSA-2024:9056

почти 2 года назад

Moderate: gstreamer1-plugins-base security update

EPSS: Низкий
github логотип

GHSA-wxq9-8346-gp9m

больше 2 лет назад

GStreamer EXIF Metadata Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the parsing of EXIF metadata. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. . Was ZDI-CAN-23896.

CVSS3: 7.8
EPSS: Низкий
oracle-oval логотип

ELSA-2024-9056

почти 2 года назад

ELSA-2024-9056: gstreamer1-plugins-base security update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2024-04000

больше 2 лет назад

Уязвимость мультимедийного фреймворка Gstreamer, связанная с целочисленным переполнением, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.8
EPSS: Низкий
redos логотип

ROS-20240904-03

около 2 лет назад

Уязвимость gstreamer1-plugins-base

CVSS3: 7.8
EPSS: Низкий
rocky логотип

RLSA-2025:7178

12 месяцев назад

Moderate: gstreamer1, gstreamer1-plugins-bad-free, gstreamer1-plugins-ugly-free, and gstreamer1-rtsp-server security update

EPSS: Низкий
oracle-oval логотип

ELSA-2025-7178

больше 1 года назад

ELSA-2025-7178: gstreamer1, gstreamer1-plugins-bad-free, gstreamer1-plugins-ugly-free, and gstreamer1-rtsp-server security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-4453

GStreamer EXIF Metadata Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the parsing of EXIF metadata. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. . Was ZDI-CAN-23896.

CVSS3: 7.8
2%
Низкий
больше 2 лет назад
redhat логотип
CVE-2024-4453

GStreamer EXIF Metadata Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the parsing of EXIF metadata. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. . Was ZDI-CAN-23896.

CVSS3: 7.8
2%
Низкий
больше 2 лет назад
nvd логотип
CVE-2024-4453

GStreamer EXIF Metadata Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the parsing of EXIF metadata. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. . Was ZDI-CAN-23896.

CVSS3: 7.8
2%
Низкий
больше 2 лет назад
debian логотип
CVE-2024-4453

GStreamer EXIF Metadata Parsing Integer Overflow Remote Code Execution ...

CVSS3: 7.8
2%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:1945-1

Security update for gstreamer-plugins-base

2%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:1910-1

Security update for gstreamer-plugins-base

2%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:1893-1

Security update for gstreamer-plugins-base

2%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:1886-1

Security update for gstreamer-plugins-base

2%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:1882-1

Security update for gstreamer-plugins-base

2%
Низкий
больше 2 лет назад
rocky логотип
RLSA-2024:9056

Moderate: gstreamer1-plugins-base security update

2%
Низкий
почти 2 года назад
github логотип
GHSA-wxq9-8346-gp9m

GStreamer EXIF Metadata Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the parsing of EXIF metadata. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. . Was ZDI-CAN-23896.

CVSS3: 7.8
2%
Низкий
больше 2 лет назад
oracle-oval логотип
ELSA-2024-9056

ELSA-2024-9056: gstreamer1-plugins-base security update (MODERATE)

2%
Низкий
почти 2 года назад
fstec логотип
BDU:2024-04000

Уязвимость мультимедийного фреймворка Gstreamer, связанная с целочисленным переполнением, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.8
2%
Низкий
больше 2 лет назад
redos логотип
ROS-20240904-03

Уязвимость gstreamer1-plugins-base

CVSS3: 7.8
2%
Низкий
около 2 лет назад
rocky логотип
RLSA-2025:7178

Moderate: gstreamer1, gstreamer1-plugins-bad-free, gstreamer1-plugins-ugly-free, and gstreamer1-rtsp-server security update

12 месяцев назад
oracle-oval логотип
ELSA-2025-7178

ELSA-2025-7178: gstreamer1, gstreamer1-plugins-bad-free, gstreamer1-plugins-ugly-free, and gstreamer1-rtsp-server security update (MODERATE)

больше 1 года назад

Уязвимостей на страницу