CVE-2017-5847
- EPSS 3.07%
- Veröffentlicht 09.02.2017 15:59:01
- Zuletzt bearbeitet 17.03.2026 15:52:33
The gst_asf_demux_process_ext_content_desc function in gst/asfdemux/gstasfdemux.c in gst-plugins-ugly in GStreamer allows remote attackers to cause a denial of service (out-of-bounds heap read) via vectors involving extended content descriptors.
CVE-2017-5848
- EPSS 6.52%
- Veröffentlicht 09.02.2017 15:59:01
- Zuletzt bearbeitet 17.03.2026 15:52:33
The gst_ps_demux_parse_psm function in gst/mpegdemux/gstmpegdemux.c in gst-plugins-bad in GStreamer allows remote attackers to cause a denial of service (invalid memory read and crash) via vectors involving PSM parsing.
CVE-2017-5843
- EPSS 7.13%
- Veröffentlicht 09.02.2017 15:59:01
- Zuletzt bearbeitet 17.03.2026 15:52:33
Multiple use-after-free vulnerabilities in the (1) gst_mini_object_unref, (2) gst_tag_list_unref, and (3) gst_mxf_demux_update_essence_tracks functions in GStreamer before 1.10.3 allow remote attackers to cause a denial of service (crash) via vectors...
CVE-2016-10199
- EPSS 3.13%
- Veröffentlicht 09.02.2017 15:59:00
- Zuletzt bearbeitet 17.03.2026 15:52:33
The qtdemux_tag_add_str_full function in gst/isomp4/qtdemux.c in gst-plugins-good in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted tag value.
CVE-2016-10198
- EPSS 0.76%
- Veröffentlicht 09.02.2017 15:59:00
- Zuletzt bearbeitet 17.03.2026 15:52:33
The gst_aac_parse_sink_setcaps function in gst/audioparsers/gstaacparse.c in gst-plugins-good in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (invalid memory read and crash) via a crafted audio file.
CVE-2016-9636
- EPSS 16.64%
- Veröffentlicht 27.01.2017 22:59:02
- Zuletzt bearbeitet 20.04.2025 01:37:25
Heap-based buffer overflow in the flx_decode_delta_fli function in gst/flx/gstflxdec.c in the FLIC decoder in GStreamer before 1.10.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) by providing a 'w...
CVE-2016-9635
- EPSS 16.09%
- Veröffentlicht 27.01.2017 22:59:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
Heap-based buffer overflow in the flx_decode_delta_fli function in gst/flx/gstflxdec.c in the FLIC decoder in GStreamer before 1.10.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) by providing a 's...
CVE-2016-9634
- EPSS 16.09%
- Veröffentlicht 27.01.2017 22:59:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
Heap-based buffer overflow in the flx_decode_delta_fli function in gst/flx/gstflxdec.c in the FLIC decoder in GStreamer before 1.10.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via the start_lin...
CVE-2016-9447
- EPSS 0.48%
- Veröffentlicht 23.01.2017 21:59:03
- Zuletzt bearbeitet 17.03.2026 15:52:33
The ROM mappings in the NSF decoder in gstreamer 0.10.x allow remote attackers to cause a denial of service (out-of-bounds read or write) and possibly execute arbitrary code via a crafted NSF music file.
CVE-2016-9445
- EPSS 2.41%
- Veröffentlicht 23.01.2017 21:59:03
- Zuletzt bearbeitet 17.03.2026 15:52:33
Integer overflow in the vmnc decoder in the gstreamer allows remote attackers to cause a denial of service (crash) via large width and height values, which triggers a buffer overflow.