CVE-2016-9810
13.01.2017, 16:59
The gst_decode_chain_free_internal function in the flxdex decoder in gst-plugins-good in GStreamer before 1.10.2 allows remote attackers to cause a denial of service (invalid memory read and crash) via an invalid file, which triggers an incorrect unref call.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| gstreamer | gstreamer | 𝑥 ≤ 1.10.1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|
| gst-plugins-good0.10 |
| ||||||||||
| gst-plugins-good1.0 |
|
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| gstreamer-0_10-plugins-good |
| ||||||||||||||||||||||||||||||||||||||
| gstreamer-0_10-plugins-good-lang |
| ||||||||||||||||||||||||||||||||||||||
| gstreamer-plugins-good |
| ||||||||||||||||||||||||||||||||||||||
| gstreamer-plugins-good-lang |
|
Red Hat Enterprise Linux Releases
Red Hat Product | |||
|---|---|---|---|
| clutter-gst2 |
| ||
| clutter-gst2-devel |
| ||
| gnome-video-effects |
| ||
| gstreamer-plugins-bad-free |
| ||
| gstreamer-plugins-bad-free-devel |
| ||
| gstreamer-plugins-bad-free-devel-docs |
| ||
| gstreamer-plugins-good |
| ||
| gstreamer-plugins-good-devel-docs |
| ||
| gstreamer1 |
| ||
| gstreamer1-devel |
| ||
| gstreamer1-devel-docs |
| ||
| gstreamer1-plugins-bad-free |
| ||
| gstreamer1-plugins-bad-free-devel |
| ||
| gstreamer1-plugins-bad-free-gtk |
| ||
| gstreamer1-plugins-base |
| ||
| gstreamer1-plugins-base-devel |
| ||
| gstreamer1-plugins-base-devel-docs |
| ||
| gstreamer1-plugins-base-tools |
| ||
| gstreamer1-plugins-good |
| ||
| orc |
| ||
| orc-compiler |
| ||
| orc-devel |
| ||
| orc-doc |
|
Common Weakness Enumeration
References