CVE-2016-9809
Description
Off-by-one error in the gst_h264_parse_set_caps function in GStreamer before 1.10.2 allows remote attackers to have unspecified impact via a crafted file, which triggers an out-of-bounds read.
Risk Information
Base Score
7.8
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.471
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| Multiple Vulnerabilities are affected in GStreamer 1.10.1 | Windows |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) gstreamer-0_10-plugins-bad-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) gstreamer-0_10-plugins-bad-debuginfo-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) gstreamer-0_10-plugins-bad-debuginfo-32bit-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) gstreamer-0_10-plugins-bad-debugsource-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) gstreamer-0_10-plugins-bad-lang-0.10.23-25.1.noarch.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstbasecamerabinsrc-0_10-23-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstbasecamerabinsrc-0_10-23-32bit-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstbasecamerabinsrc-0_10-23-debuginfo-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstbasecamerabinsrc-0_10-23-debuginfo-32bit-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstbasevideo-0_10-23-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstbasevideo-0_10-23-32bit-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstbasevideo-0_10-23-debuginfo-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstbasevideo-0_10-23-debuginfo-32bit-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstcodecparsers-0_10-23-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstcodecparsers-0_10-23-debuginfo-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstphotography-0_10-23-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstphotography-0_10-23-32bit-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstphotography-0_10-23-debuginfo-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstphotography-0_10-23-debuginfo-32bit-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstsignalprocessor-0_10-23-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstsignalprocessor-0_10-23-32bit-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstsignalprocessor-0_10-23-debuginfo-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstsignalprocessor-0_10-23-debuginfo-32bit-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstvdp-0_10-23-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstvdp-0_10-23-32bit-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstvdp-0_10-23-debuginfo-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0330-1(SUSE Linux Enterprise Desktop 12-SP2 ) libgstvdp-0_10-23-debuginfo-32bit-0.10.23-25.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) gstreamer-0_10-plugins-bad-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) gstreamer-0_10-plugins-bad-debuginfo-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) gstreamer-0_10-plugins-bad-debuginfo-32bit-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) gstreamer-0_10-plugins-bad-debugsource-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) gstreamer-0_10-plugins-bad-lang-0.10.23-19.6.1.noarch.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstbasecamerabinsrc-0_10-23-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstbasecamerabinsrc-0_10-23-32bit-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstbasecamerabinsrc-0_10-23-debuginfo-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstbasecamerabinsrc-0_10-23-debuginfo-32bit-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstbasevideo-0_10-23-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstbasevideo-0_10-23-32bit-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstbasevideo-0_10-23-debuginfo-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstbasevideo-0_10-23-debuginfo-32bit-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstcodecparsers-0_10-23-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstcodecparsers-0_10-23-debuginfo-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstphotography-0_10-23-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstphotography-0_10-23-32bit-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstphotography-0_10-23-debuginfo-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstphotography-0_10-23-debuginfo-32bit-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstsignalprocessor-0_10-23-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstsignalprocessor-0_10-23-32bit-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstsignalprocessor-0_10-23-debuginfo-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstsignalprocessor-0_10-23-debuginfo-32bit-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstvdp-0_10-23-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstvdp-0_10-23-32bit-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstvdp-0_10-23-debuginfo-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2017:0331-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstvdp-0_10-23-debuginfo-32bit-0.10.23-19.6.1.x86_64.rpm | Linux |
| SUSE-SU-2016:3297-1(SUSE Linux Enterprise Desktop 12-SP1 ) gstreamer-plugins-bad-1.2.4-3.4.1.x86_64.rpm | Linux |
| SUSE-SU-2016:3297-1(SUSE Linux Enterprise Desktop 12-SP1 ) gstreamer-plugins-bad-debuginfo-1.2.4-3.4.1.x86_64.rpm | Linux |
| SUSE-SU-2016:3297-1(SUSE Linux Enterprise Desktop 12-SP1 ) gstreamer-plugins-bad-debugsource-1.2.4-3.4.1.x86_64.rpm | Linux |
| SUSE-SU-2016:3297-1(SUSE Linux Enterprise Desktop 12-SP1 ) gstreamer-plugins-bad-lang-1.2.4-3.4.1.noarch.rpm | Linux |
| SUSE-SU-2016:3297-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstbasecamerabinsrc-1_0-0-1.2.4-3.4.1.x86_64.rpm | Linux |
| SUSE-SU-2016:3297-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstbasecamerabinsrc-1_0-0-debuginfo-1.2.4-3.4.1.x86_64.rpm | Linux |
| SUSE-SU-2016:3297-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstcodecparsers-1_0-0-1.2.4-3.4.1.x86_64.rpm | Linux |
| SUSE-SU-2016:3297-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstcodecparsers-1_0-0-debuginfo-1.2.4-3.4.1.x86_64.rpm | Linux |
| SUSE-SU-2016:3297-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstegl-1_0-0-1.2.4-3.4.1.x86_64.rpm | Linux |
| SUSE-SU-2016:3297-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstegl-1_0-0-debuginfo-1.2.4-3.4.1.x86_64.rpm | Linux |
| SUSE-SU-2016:3297-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstmpegts-1_0-0-1.2.4-3.4.1.x86_64.rpm | Linux |
| SUSE-SU-2016:3297-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstmpegts-1_0-0-debuginfo-1.2.4-3.4.1.x86_64.rpm | Linux |
| SUSE-SU-2016:3297-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstphotography-1_0-0-1.2.4-3.4.1.x86_64.rpm | Linux |
| SUSE-SU-2016:3297-1(SUSE Linux Enterprise Desktop 12-SP1 ) libgstphotography-1_0-0-debuginfo-1.2.4-3.4.1.x86_64.rpm | Linux |
Patch Details
No records foundReferences
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234