gstreamer1-plugins-good-1.16.1-4.el8
エラータID: AXSA:2024-8317:02
リリース日:
2024/06/17 Monday - 19:21
題名:
gstreamer1-plugins-good-1.16.1-4.el8
影響のあるチャネル:
Asianux Server 8 for x86_64
Severity:
Moderate
Description:
以下項目について対処しました。
[Security Fix]
- GStreamer の FLAC 形式の音声データファイルの解析処理には、
データの検証処理の不備に起因した整数オーバーフローの問題が
あるため、リモートの攻撃者により、細工された FLAC 形式の
音声データファイルを介して、任意のコードの実行を可能とする
脆弱性が存在します。(CVE-2023-37327)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2023-37327
GStreamer FLAC File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the parsing of FLAC audio files. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-20775.
GStreamer FLAC File Parsing Integer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the parsing of FLAC audio files. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-20775.
追加情報:
N/A
ダウンロード:
SRPMS
- gstreamer1-plugins-good-1.16.1-4.el8.src.rpm
MD5: a2d3e50039a4c343de8754bf4afbd62b
SHA-256: 352a0b3838a5c0ad98d5aa8d44b5657514a337ef6139b1ac3cf93c61b29d7f35
Size: 3.74 MB
Asianux Server 8 for x86_64
- gstreamer1-plugins-good-1.16.1-4.el8.i686.rpm
MD5: 5593fc4660fd122dc3b5051577a80ab9
SHA-256: 5b14d7db20cd7d4442ed507f03ef479fd03821e1402f21e3a2e7b9029a90b929
Size: 2.37 MB - gstreamer1-plugins-good-1.16.1-4.el8.x86_64.rpm
MD5: a5955decb8d1e352f2bf5849528131c5
SHA-256: 884127cdc29a0e540cd25e9fd5853206a7e20b7e779afc9f5363cd6f00a1a57b
Size: 2.29 MB - gstreamer1-plugins-good-gtk-1.16.1-4.el8.i686.rpm
MD5: e38242b55e7398e2b7812ddefbb943c8
SHA-256: 4247132adeafae829637f4a16ef5feabcaaed5711c5c9b534b0d3a92b370a216
Size: 37.29 kB - gstreamer1-plugins-good-gtk-1.16.1-4.el8.x86_64.rpm
MD5: 9cee00d7b58cbd8fa2ac402bf93232c4
SHA-256: e05fe4b32d18ff355e0948311d9b7b89f85e55d46077c6c1e737551cae2b8749
Size: 36.01 kB