The windows_icon_typefind function in gst-plugins-base in GStreamer prior to 1.10.2, when G_SLICE is set to always-malloc, allows remote malicious users to cause a denial of service (out-of-bounds read) via a crafted ico file.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
gstreamer gstreamer |
||
fedoraproject fedora 35 |
||
debian debian linux 8.0 |
||
debian debian linux 9.0 |
||
redhat enterprise linux desktop 7.0 |
||
redhat enterprise linux workstation 7.0 |
||
redhat enterprise linux server 7.0 |
||
redhat enterprise linux server aus 7.4 |
||
redhat enterprise linux eus 7.4 |
||
redhat enterprise linux eus 7.5 |
||
redhat enterprise linux server tus 7.6 |
||
redhat enterprise linux server aus 7.6 |
||
redhat enterprise linux eus 7.6 |
||
redhat enterprise linux server aus 7.7 |
||
redhat enterprise linux server tus 7.7 |
||
redhat enterprise linux eus 7.7 |