SUSE-SU-2016:3296-1 -- SLES gstreamer-plugins-bad, libgstadaptivedemux-1_0-0, libgstbadaudio-1_0-0, libgstbadbase-1_0-0, libgstbadvideo-1_0-0, libgstbasecamerabinsrc-1_0-0, libgstcodecparsers-1_0-0, libgstgl-1_0-0, libgstmpegts-1_0-0, libgstphotography-1_0-0, libgsturidownloader-1_0-0ID: oval:org.secpod.oval:def:89045256 | Date: (C)2021-08-03 (M)2023-02-13 |
Class: PATCH | Family: unix |
This update for gstreamer-plugins-bad fixes the following security issues, which would allow attackers able to submit media files for indexing to cause code execution or crashes: - Check an integer overflow and initialize a buffer in vmncdec. - CVE-2016-9809: Ensure codec_data has the right size when reading number of SPS . - CVE-2016-9812: Add more section size checks . - CVE-2016-9813: fix PAT parsing .
Platform: |
SUSE Linux Enterprise Server 12 SP2 |
Product: |
gstreamer-plugins-bad |
libgstadaptivedemux-1_0-0 |
libgstbadaudio-1_0-0 |
libgstbadbase-1_0-0 |
libgstbadvideo-1_0-0 |
libgstbasecamerabinsrc-1_0-0 |
libgstcodecparsers-1_0-0 |
libgstgl-1_0-0 |
libgstmpegts-1_0-0 |
libgstphotography-1_0-0 |
libgsturidownloader-1_0-0 |