rpm package
suse/gstreamer-plugins-base&distro=SUSE Linux Enterprise Module for Package Hub 15 SP7
pkg:rpm/suse/gstreamer-plugins-base&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Package%20Hub%2015%20SP7
Vulnerabilities (3)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2025-47808 | Med | 5.6 | < 1.24.0-150600.3.11.1 | 1.24.0-150600.3.11.1 | Aug 7, 2025 | In GStreamer through 1.26.1, the subparse plugin's tmplayer_parse_line function may dereference a NULL pointer while parsing a subtitle file, leading to a crash. | |
| CVE-2025-47807 | Med | 5.5 | < 1.24.0-150600.3.11.1 | 1.24.0-150600.3.11.1 | Aug 7, 2025 | In GStreamer through 1.26.1, the subparse plugin's subrip_unescape_formatting function may dereference a NULL pointer while parsing a subtitle file, leading to a crash. | |
| CVE-2025-47806 | Med | 5.6 | < 1.24.0-150600.3.11.1 | 1.24.0-150600.3.11.1 | Aug 7, 2025 | In GStreamer through 1.26.1, the subparse plugin's parse_subrip_time function may write data past the bounds of a stack buffer, leading to a crash. |
- affected < 1.24.0-150600.3.11.1fixed 1.24.0-150600.3.11.1
In GStreamer through 1.26.1, the subparse plugin's tmplayer_parse_line function may dereference a NULL pointer while parsing a subtitle file, leading to a crash.
- affected < 1.24.0-150600.3.11.1fixed 1.24.0-150600.3.11.1
In GStreamer through 1.26.1, the subparse plugin's subrip_unescape_formatting function may dereference a NULL pointer while parsing a subtitle file, leading to a crash.
- affected < 1.24.0-150600.3.11.1fixed 1.24.0-150600.3.11.1
In GStreamer through 1.26.1, the subparse plugin's parse_subrip_time function may write data past the bounds of a stack buffer, leading to a crash.