Medium severity5.5NVD Advisory· Published Jan 13, 2017· Updated May 13, 2026
CVE-2016-9810
CVE-2016-9810
Description
The gst_decode_chain_free_internal function in the flxdex decoder in gst-plugins-good in GStreamer before 1.10.2 allows remote attackers to cause a denial of service (invalid memory read and crash) via an invalid file, which triggers an incorrect unref call.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- www.openwall.com/lists/oss-security/2016/12/01/2nvdMailing ListThird Party Advisory
- www.openwall.com/lists/oss-security/2016/12/05/8nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/95163nvdThird Party AdvisoryVDB Entry
- gstreamer.freedesktop.org/releases/1.10/nvdRelease NotesVendor Advisory
- bugzilla.gnome.org/show_bug.cginvdIssue Tracking
- access.redhat.com/errata/RHSA-2017:2060nvd
- security.gentoo.org/glsa/201705-10nvd
News mentions
0No linked articles in our index yet.