MGASA-2017-0320
Dashboard / Vulnerabilities / MGASA-2017-0320
MGASA-2017-0320
Summary: Updated gstreamer0.10-plugins-base and gstreamer1.0-plugins-base packages fix security vulnerabilities
Details: Denial of service in GStreamer base plugins can be caused by floating point exceptions (CVE-2017-5837, CVE-2017-5844), stack overflow (CVE-2017-5839), or out-of-bounds heap read (CVE-2017-5842). Note that GStreamer 0.10 was only affected by the floating point exceptions.
References: https://advisories.mageia.org/MGASA-2017-0320.html, https://bugs.mageia.org/show_bug.cgi?id=20236, http://openwall.com/lists/oss-security/2017/02/02/9, https://lwn.net/Alerts/714996/
Affected packages
Package
Name: gstreamer0.10-plugins-base
Purl: pkg:rpm/mageia/gstreamer0.10-plugins-base?arch=source&distro=mageia-5
Affected ranges
Type: ECOSYSTEM
Events:
