Количество 47
Количество 47
ROS-20260922-80-0010
Уязвимость gstreamer1-plugins-bad-free
ROS-20260922-80-0009
Уязвимость gstreamer1-plugins-bad-freeworld
ROS-20260922-80-0008
Уязвимость gstreamer1-plugins-bad-free
ROS-20260922-73-0009
Уязвимость gstreamer1-plugins-bad-free
ROS-20260922-73-0008
Уязвимость gstreamer1-plugins-bad-free
GHSA-cj3w-jxwm-h5h8
A signed integer overflow vulnerability was found in GStreamer's VMnc decoder. A crafted VMnc stream with large cursor dimensions can overflow signed integer payload-size arithmetic, bypassing a length check and leading to out-of-bounds reads. A remote attacker could trick a user into opening a specially crafted VMnc file, potentially causing a crash or information disclosure.
GHSA-38vh-57p3-w3gw
A heap buffer overflow vulnerability was found in GStreamer's librfb (RFB/VNC client). The rectangle bounds check incorrectly validates area rather than individual dimensions, allowing a malicious VNC server to send a rectangle that extends beyond the framebuffer. A remote attacker could set up a malicious VNC server and trick a user into connecting, resulting in an out-of-bounds heap write that could lead to code execution or a crash.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
ROS-20260922-80-0010 Уязвимость gstreamer1-plugins-bad-free | CVSS3: 8.8 | 1% Низкий | 3 дня назад | |
ROS-20260922-80-0009 Уязвимость gstreamer1-plugins-bad-freeworld | CVSS3: 7.1 | 0% Низкий | 3 дня назад | |
ROS-20260922-80-0008 Уязвимость gstreamer1-plugins-bad-free | CVSS3: 7.1 | 0% Низкий | 3 дня назад | |
ROS-20260922-73-0009 Уязвимость gstreamer1-plugins-bad-free | CVSS3: 8.8 | 1% Низкий | 3 дня назад | |
ROS-20260922-73-0008 Уязвимость gstreamer1-plugins-bad-free | CVSS3: 7.1 | 0% Низкий | 3 дня назад | |
GHSA-cj3w-jxwm-h5h8 A signed integer overflow vulnerability was found in GStreamer's VMnc decoder. A crafted VMnc stream with large cursor dimensions can overflow signed integer payload-size arithmetic, bypassing a length check and leading to out-of-bounds reads. A remote attacker could trick a user into opening a specially crafted VMnc file, potentially causing a crash or information disclosure. | CVSS3: 7.1 | 0% Низкий | 3 месяца назад | |
GHSA-38vh-57p3-w3gw A heap buffer overflow vulnerability was found in GStreamer's librfb (RFB/VNC client). The rectangle bounds check incorrectly validates area rather than individual dimensions, allowing a malicious VNC server to send a rectangle that extends beyond the framebuffer. A remote attacker could set up a malicious VNC server and trick a user into connecting, resulting in an out-of-bounds heap write that could lead to code execution or a crash. | CVSS3: 8.8 | 1% Низкий | 3 месяца назад |
Уязвимостей на страницу