[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250108

 
 

909

 
 

196064

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2016:3296-1 -- SLES gstreamer-plugins-bad, libgstadaptivedemux-1_0-0, libgstbadaudio-1_0-0, libgstbadbase-1_0-0, libgstbadvideo-1_0-0, libgstbasecamerabinsrc-1_0-0, libgstcodecparsers-1_0-0, libgstgl-1_0-0, libgstmpegts-1_0-0, libgstphotography-1_0-0, libgsturidownloader-1_0-0

ID: oval:org.secpod.oval:def:89045256Date: (C)2021-08-03   (M)2023-02-13
Class: PATCHFamily: unix




This update for gstreamer-plugins-bad fixes the following security issues, which would allow attackers able to submit media files for indexing to cause code execution or crashes: - Check an integer overflow and initialize a buffer in vmncdec. - CVE-2016-9809: Ensure codec_data has the right size when reading number of SPS . - CVE-2016-9812: Add more section size checks . - CVE-2016-9813: fix PAT parsing .

Platform:
SUSE Linux Enterprise Server 12 SP2
Product:
gstreamer-plugins-bad
libgstadaptivedemux-1_0-0
libgstbadaudio-1_0-0
libgstbadbase-1_0-0
libgstbadvideo-1_0-0
libgstbasecamerabinsrc-1_0-0
libgstcodecparsers-1_0-0
libgstgl-1_0-0
libgstmpegts-1_0-0
libgstphotography-1_0-0
libgsturidownloader-1_0-0
Reference:
SUSE-SU-2016:3296-1
CVE-2016-9445
CVE-2016-9446
CVE-2016-9809
CVE-2016-9812
CVE-2016-9813
CVE    5
CVE-2016-9812
CVE-2016-9446
CVE-2016-9445
CVE-2016-9809
...
CPE    10
cpe:/o:suse:suse_linux_enterprise_server:12:sp2
cpe:/a:libgstadaptivedemux:libgstadaptivedemux-1_0-0
cpe:/a:gstreamer-plugins-bad:gstreamer-plugins-bad
cpe:/a:libgstgl:libgstgl-1_0-0
...

© SecPod Technologies