CVE-2017-5845
09.02.2017, 15:59
The gst_avi_demux_parse_ncdt function in gst/avi/gstavidemux.c in gst-plugins-good in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (invalid memory read and crash) via a ncdt sub-tag that "goes behind" the surrounding tag.Enginsight
| Vendor | Product | Version |
|---|---|---|
| gstreamer_project | gstreamer | 𝑥 ≤ 1.10.2 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References