4.3
CVSSv2

CVE-2016-9810

Published: 13/01/2017 Updated: 05/01/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

The gst_decode_chain_free_internal function in the flxdex decoder in gst-plugins-good in GStreamer prior to 1.10.2 allows remote malicious users to cause a denial of service (invalid memory read and crash) via an invalid file, which triggers an incorrect unref call.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gstreamer gstreamer

Vendor Advisories

The gst_decode_chain_free_internal function in the flxdex decoder in gst-plugins-good in GStreamer before 1102 allows remote attackers to cause a denial of service (invalid memory read and crash) via an invalid file, which triggers an incorrect unref call ...