[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248364

 
 

909

 
 

195388

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2023:2260-01 -- Redhat gstreamer1-plugins-good

ID: oval:org.secpod.oval:def:507682Date: (C)2023-05-22   (M)2023-07-03
Class: PATCHFamily: unix




GStreamer is a streaming media framework based on graphs of filters which operate on media data. The gstreamer1-plugins-good packages contain a collection of well-supported plug-ins of good quality and under the LGPL license. Security Fix: * gstreamer-plugins-good: Potential heap overwrite in gst_matroska_demux_add_wvpk_header * gstreamer-plugins-good: Heap-based buffer overflow in the avi demuxer when handling certain AVI files * gstreamer-plugins-good: Potential heap overwrite in mkv demuxing using zlib decompression * gstreamer-plugins-good: Potential heap overwrite in mkv demuxing using bz2 decompression * gstreamer-plugins-good: Potential heap overwrite in mkv demuxing using lzo decompression * gstreamer-plugins-good: Potential heap overwrite in mkv demuxing using HEADERSTRIP decompression * gstreamer-plugins-good: Potential heap overwrite in mp4 demuxing using zlib decompression For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section. Additional Changes: For detailed information on changes in this release, see the Red Hat Enterprise Linux 9.2 Release Notes linked from the References section.

Platform:
Red Hat Enterprise Linux 9
Product:
gstreamer1-plugins-good
Reference:
RHSA-2023:2260-01
CVE-2022-1920
CVE-2022-1921
CVE-2022-1922
CVE-2022-1923
CVE-2022-1924
CVE-2022-1925
CVE-2022-2122
CVE    7
CVE-2022-2122
CVE-2022-1924
CVE-2022-1925
CVE-2022-1922
...
CPE    2
cpe:/a:freedesktop:gstreamer1-plugins-good
cpe:/o:redhat:enterprise_linux:9

© SecPod Technologies