DSA-5204-1 gst-plugins-good1.0 -- security update

Related Vulnerabilities: CVE-2022-1920   CVE-2022-1921   CVE-2022-1922   CVE-2022-1923   CVE-2022-1924   CVE-2022-1925   CVE-2022-2122  

Adam Doupe discovered multiple vulnerabilities in the Gstreamer plugins to demux Mastroska and AVI files which could result in denial of service or the execution of arbitrary code. For the stable distribution (bullseye), these problems have been fixed in version 1.18.4-2+deb11u1. We recommend that you upgrade your gst-plugins-good1.0 packages. For the detailed security status of gst-plugins-good1.0 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/gst-plugins-good1.0

Debian Security Advisory

DSA-5204-1 gst-plugins-good1.0 -- security update

Date Reported:
09 Aug 2022
Affected Packages:
gst-plugins-good1.0
Vulnerable:
Yes
Security database references:
In Mitre's CVE dictionary: CVE-2022-1920, CVE-2022-1921, CVE-2022-1922, CVE-2022-1923, CVE-2022-1924, CVE-2022-1925, CVE-2022-2122.
More information:

Adam Doupe discovered multiple vulnerabilities in the Gstreamer plugins to demux Mastroska and AVI files which could result in denial of service or the execution of arbitrary code.

For the stable distribution (bullseye), these problems have been fixed in version 1.18.4-2+deb11u1.

We recommend that you upgrade your gst-plugins-good1.0 packages.

For the detailed security status of gst-plugins-good1.0 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/gst-plugins-good1.0