Show filters
82 Total Results
Displaying 51-60 of 82
Sort by:
Attacker Value
Unknown

CVE-2021-3497

Disclosure Date: April 19, 2021 (last updated February 22, 2025)
GStreamer before 1.18.4 might access already-freed memory in error code paths when demuxing certain malformed Matroska files.
Attacker Value
Unknown

CVE-2021-3498

Disclosure Date: April 19, 2021 (last updated February 22, 2025)
GStreamer before 1.18.4 might cause heap corruption when parsing certain malformed Matroska files.
Attacker Value
Unknown

CVE-2019-9928

Disclosure Date: April 24, 2019 (last updated November 27, 2024)
GStreamer before 1.16.0 has a heap-based buffer overflow in the RTSP connection parser via a crafted response from a server, potentially allowing remote code execution.
0
Attacker Value
Unknown

CVE-2016-10198

Disclosure Date: February 09, 2017 (last updated November 26, 2024)
The gst_aac_parse_sink_setcaps function in gst/audioparsers/gstaacparse.c in gst-plugins-good in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (invalid memory read and crash) via a crafted audio file.
0
Attacker Value
Unknown

CVE-2017-5840

Disclosure Date: February 09, 2017 (last updated November 26, 2024)
The qtdemux_parse_samples function in gst/isomp4/qtdemux.c in gst-plugins-good in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (out-of-bounds heap read) via vectors involving the current stts index.
0
Attacker Value
Unknown

CVE-2017-5845

Disclosure Date: February 09, 2017 (last updated November 26, 2024)
The gst_avi_demux_parse_ncdt function in gst/avi/gstavidemux.c in gst-plugins-good in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (invalid memory read and crash) via a ncdt sub-tag that "goes behind" the surrounding tag.
0
Attacker Value
Unknown

CVE-2017-5837

Disclosure Date: February 09, 2017 (last updated November 26, 2024)
The gst_riff_create_audio_caps function in gst-libs/gst/riff/riff-media.c in gst-plugins-base in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (floating point exception and crash) via a crafted video file.
0
Attacker Value
Unknown

CVE-2016-10199

Disclosure Date: February 09, 2017 (last updated November 26, 2024)
The qtdemux_tag_add_str_full function in gst/isomp4/qtdemux.c in gst-plugins-good in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted tag value.
0
Attacker Value
Unknown

CVE-2017-5838

Disclosure Date: February 09, 2017 (last updated November 26, 2024)
The gst_date_time_new_from_iso8601_string function in gst/gstdatetime.c in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a malformed datetime string.
0
Attacker Value
Unknown

CVE-2017-5846

Disclosure Date: February 09, 2017 (last updated November 26, 2024)
The gst_asf_demux_process_ext_stream_props function in gst/asfdemux/gstasfdemux.c in gst-plugins-ugly in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (invalid memory read and crash) via vectors related to the number of languages in a video file.
0