SUSE-SU-2023:3236-1
Dashboard / Vulnerabilities / SUSE-SU-2023:3236-1
SUSE-SU-2023:3236-1
Summary: Security update for gstreamer-plugins-base
Details: This update for gstreamer-plugins-base fixes the following issues: - CVE-2023-37327: Fixed FLAC file parsing integer overflow remote code execution vulnerability. (bsc#1213128) - CVE-2023-37328: Fixed PGS file parsing heap-based buffer overflow remote code execution vulnerability. (bsc#1213131)
References: https://www.suse.com/support/update/announcement/2023/suse-su-20233236-1/, https://bugzilla.suse.com/1213128, https://bugzilla.suse.com/1213131, https://www.suse.com/security/cve/CVE-2023-37327, https://www.suse.com/security/cve/CVE-2023-37328
Affected packages
Package
Name: gstreamer-plugins-base
Purl: pkg:rpm/suse/gstreamer-plugins-base&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5
Affected ranges
Type: ECOSYSTEM
Events:
