rpm package
suse/gstreamer-plugins-good&distro=SUSE Linux Enterprise Module for Basesystem 15 SP4
pkg:rpm/suse/gstreamer-plugins-good&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP4
Vulnerabilities (8)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2023-37327 | Hig | 8.8 | < 1.20.1-150400.3.6.1 | 1.20.1-150400.3.6.1 | May 3, 2024 | GStreamer FLAC File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to exploit this vulnerability but attack vector | |
| CVE-2022-2122 | Hig | 7.8 | < 1.20.1-150400.3.3.1 | 1.20.1-150400.3.3.1 | Jul 19, 2022 | DOS / potential heap overwrite in qtdemux using zlib decompression. Integer overflow in qtdemux element in qtdemux_inflate function which causes a segfault, or could cause a heap overwrite, depending on libc and OS. Depending on the libc used, and the underlying OS capabilities, | |
| CVE-2022-1925 | Hig | 7.8 | < 1.20.1-150400.3.3.1 | 1.20.1-150400.3.3.1 | Jul 19, 2022 | DOS / potential heap overwrite in mkv demuxing using HEADERSTRIP decompression. Integer overflow in matroskaparse element in gst_matroska_decompress_data function which causes a heap overflow. Due to restrictions on chunk sizes in the matroskademux element, the overflow can't be | |
| CVE-2022-1924 | Hig | 7.8 | < 1.20.1-150400.3.3.1 | 1.20.1-150400.3.3.1 | Jul 19, 2022 | DOS / potential heap overwrite in mkv demuxing using lzo decompression. Integer overflow in matroskademux element in lzo decompression function which causes a segfault, or could cause a heap overwrite, depending on libc and OS. Depending on the libc used, and the underlying OS ca | |
| CVE-2022-1923 | Hig | 7.8 | < 1.20.1-150400.3.3.1 | 1.20.1-150400.3.3.1 | Jul 19, 2022 | DOS / potential heap overwrite in mkv demuxing using bzip decompression. Integer overflow in matroskademux element in bzip decompression function which causes a segfault, or could cause a heap overwrite, depending on libc and OS. Depending on the libc used, and the underlying OS | |
| CVE-2022-1922 | Hig | 7.8 | < 1.20.1-150400.3.3.1 | 1.20.1-150400.3.3.1 | Jul 19, 2022 | DOS / potential heap overwrite in mkv demuxing using zlib decompression. Integer overflow in matroskademux element in gst_matroska_decompress_data function which causes a segfault, or could cause a heap overwrite, depending on libc and OS. Depending on the libc used, and the unde | |
| CVE-2022-1921 | Hig | 7.8 | < 1.20.1-150400.3.3.1 | 1.20.1-150400.3.3.1 | Jul 19, 2022 | Integer overflow in avidemux element in gst_avi_demux_invert function which allows a heap overwrite while parsing avi files. Potential for arbitrary code execution through heap overwrite. | |
| CVE-2022-1920 | Hig | 7.8 | < 1.20.1-150400.3.3.1 | 1.20.1-150400.3.3.1 | Jul 19, 2022 | Integer overflow in matroskademux element in gst_matroska_demux_add_wvpk_header function which allows a heap overwrite while parsing matroska files. Potential for arbitrary code execution through heap overwrite. |
- affected < 1.20.1-150400.3.6.1fixed 1.20.1-150400.3.6.1
GStreamer FLAC File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to exploit this vulnerability but attack vector
- affected < 1.20.1-150400.3.3.1fixed 1.20.1-150400.3.3.1
DOS / potential heap overwrite in qtdemux using zlib decompression. Integer overflow in qtdemux element in qtdemux_inflate function which causes a segfault, or could cause a heap overwrite, depending on libc and OS. Depending on the libc used, and the underlying OS capabilities,
- affected < 1.20.1-150400.3.3.1fixed 1.20.1-150400.3.3.1
DOS / potential heap overwrite in mkv demuxing using HEADERSTRIP decompression. Integer overflow in matroskaparse element in gst_matroska_decompress_data function which causes a heap overflow. Due to restrictions on chunk sizes in the matroskademux element, the overflow can't be
- affected < 1.20.1-150400.3.3.1fixed 1.20.1-150400.3.3.1
DOS / potential heap overwrite in mkv demuxing using lzo decompression. Integer overflow in matroskademux element in lzo decompression function which causes a segfault, or could cause a heap overwrite, depending on libc and OS. Depending on the libc used, and the underlying OS ca
- affected < 1.20.1-150400.3.3.1fixed 1.20.1-150400.3.3.1
DOS / potential heap overwrite in mkv demuxing using bzip decompression. Integer overflow in matroskademux element in bzip decompression function which causes a segfault, or could cause a heap overwrite, depending on libc and OS. Depending on the libc used, and the underlying OS
- affected < 1.20.1-150400.3.3.1fixed 1.20.1-150400.3.3.1
DOS / potential heap overwrite in mkv demuxing using zlib decompression. Integer overflow in matroskademux element in gst_matroska_decompress_data function which causes a segfault, or could cause a heap overwrite, depending on libc and OS. Depending on the libc used, and the unde
- affected < 1.20.1-150400.3.3.1fixed 1.20.1-150400.3.3.1
Integer overflow in avidemux element in gst_avi_demux_invert function which allows a heap overwrite while parsing avi files. Potential for arbitrary code execution through heap overwrite.
- affected < 1.20.1-150400.3.3.1fixed 1.20.1-150400.3.3.1
Integer overflow in matroskademux element in gst_matroska_demux_add_wvpk_header function which allows a heap overwrite while parsing matroska files. Potential for arbitrary code execution through heap overwrite.