Advisories ยป MGASA-2017-0320

Updated gstreamer0.10-plugins-base and gstreamer1.0-plugins-base packages fix security vulnerabilities

Publication date: 29 Aug 2017
Modification date: 29 Aug 2017
Type: security
Affected Mageia releases : 5
CVE: CVE-2017-5837 , CVE-2017-5839 , CVE-2017-5842 , CVE-2017-5844

Description

Denial of service in GStreamer base plugins can be caused by floating
point exceptions (CVE-2017-5837, CVE-2017-5844), stack overflow
(CVE-2017-5839), or out-of-bounds heap read (CVE-2017-5842).

Note that GStreamer 0.10 was only affected by the floating point
exceptions.
                

References

SRPMS

5/core