Login
Newsletter
Werbung

Sicherheit: Denial of Service in GStreamer
Aktuelle Meldungen Distributionen
Name: Denial of Service in GStreamer
ID: USN-6291-1
Distribution: Ubuntu
Plattformen: Ubuntu 16.04 LTS (Available with Ubuntu Pro)
Datum: Mi, 16. August 2023, 22:35
Referenzen: https://www.cve.org/CVERecord?id=CVE-2017-5838
Applikationen: GStreamer

Originalnachricht


--===============7641549032837432739==
Content-Type: multipart/signed; micalg=pgp-sha512;
protocol="application/pgp-signature";
boundary="82I3+IH0IqGh5yIs"
Content-Disposition: inline


--82I3+IH0IqGh5yIs
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline

==========================================================================
Ubuntu Security Notice USN-6291-1
August 16, 2023

gstreamer1.0 vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 16.04 LTS (Available with Ubuntu Pro)

Summary:

GStreamer could be made to denial of service if it received a specially
crafted datetime string.

Software Description:
- gstreamer1.0: GObject introspection data for the GStreamer library

Details:

Hanno Bock discovered that GStreamer incorrecly handled certain datetime
strings. An attacker could possibly use this issue to cause a denial
of service or expose sensitive information.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 16.04 LTS (Available with Ubuntu Pro):
gstreamer1.0-tools 1.8.3-1~ubuntu0.1+esm1
libgstreamer1.0-0 1.8.3-1~ubuntu0.1+esm1

In general, a standard system update will make all the necessary changes.

References:
https://ubuntu.com/security/notices/USN-6291-1
CVE-2017-5838


--82I3+IH0IqGh5yIs
Content-Type: application/pgp-signature; name="signature.asc"

-----BEGIN PGP SIGNATURE-----
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=LTLx
-----END PGP SIGNATURE-----

--82I3+IH0IqGh5yIs--


--===============7641549032837432739==
Content-Type: text/plain; charset="utf-8"
MIME-Version: 1.0
Content-Transfer-Encoding: base64
Content-Disposition: inline


--===============7641549032837432739==--
Pro-Linux
Pro-Linux @Facebook
Neue Nachrichten
Werbung