Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.1.10.2023.0354
Kategorie:Mageia Linux Local Security Checks
Titel:Mageia: Security Advisory (MGASA-2023-0354)
Zusammenfassung:The remote host is missing an update for the 'gstreamer1.0, gstreamer1.0-devtools, gstreamer1.0-editing-services, gstreamer1.0-libav, gstreamer1.0-moodbar, gstreamer1.0-omx, gstreamer1.0-plugins-bad, gstreamer1.0-plugins-base, gstreamer1.0-plugins-good, gstreamer1.0-plugins-ugly, gstreamer1.0-python, gstreamer1.0-rtsp-server, gstreamer1.0-vaapi' package(s) announced via the MGASA-2023-0354 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'gstreamer1.0, gstreamer1.0-devtools, gstreamer1.0-editing-services, gstreamer1.0-libav, gstreamer1.0-moodbar, gstreamer1.0-omx, gstreamer1.0-plugins-bad, gstreamer1.0-plugins-base, gstreamer1.0-plugins-good, gstreamer1.0-plugins-ugly, gstreamer1.0-python, gstreamer1.0-rtsp-server, gstreamer1.0-vaapi' package(s) announced via the MGASA-2023-0354 advisory.

Vulnerability Insight:
Updated gstreamer packages fix many security issues (see the references
below).
Apart from the listed CVEs, ZDI-CAN-22300 is also fixed.

Affected Software/OS:
'gstreamer1.0, gstreamer1.0-devtools, gstreamer1.0-editing-services, gstreamer1.0-libav, gstreamer1.0-moodbar, gstreamer1.0-omx, gstreamer1.0-plugins-bad, gstreamer1.0-plugins-base, gstreamer1.0-plugins-good, gstreamer1.0-plugins-ugly, gstreamer1.0-python, gstreamer1.0-rtsp-server, gstreamer1.0-vaapi' package(s) on Mageia 9.

Solution:
Please install the updated package(s).

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2022-1920
Debian Security Information: DSA-5204 (Google Search)
https://www.debian.org/security/2022/dsa-5204
https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/1226
https://lists.debian.org/debian-lts-announce/2022/08/msg00001.html
Common Vulnerability Exposure (CVE) ID: CVE-2022-1922
https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/1225
Common Vulnerability Exposure (CVE) ID: CVE-2022-1923
Common Vulnerability Exposure (CVE) ID: CVE-2022-1924
Common Vulnerability Exposure (CVE) ID: CVE-2022-1925
Common Vulnerability Exposure (CVE) ID: CVE-2022-2122
Common Vulnerability Exposure (CVE) ID: CVE-2023-37327
ZDI-23-903
https://www.zerodayinitiative.com/advisories/ZDI-23-903/
vendor-provided URL
https://gstreamer.freedesktop.org/security/sa-2023-0001.html
Common Vulnerability Exposure (CVE) ID: CVE-2023-37328
ZDI-23-901
https://www.zerodayinitiative.com/advisories/ZDI-23-901/
https://gstreamer.freedesktop.org/security/sa-2023-0003.html
Common Vulnerability Exposure (CVE) ID: CVE-2023-37329
ZDI-23-902
https://www.zerodayinitiative.com/advisories/ZDI-23-902/
https://gstreamer.freedesktop.org/security/sa-2023-0002.html
Common Vulnerability Exposure (CVE) ID: CVE-2023-38103
ZDI-23-1007
https://www.zerodayinitiative.com/advisories/ZDI-23-1007/
https://gitlab.freedesktop.org/gstreamer/gstreamer/uploads/d4a0aa4ec2165f6c418703b9e1459d8b/0002-rmdemux-Check-for-integer-overflow-when-calculation-.patch
Common Vulnerability Exposure (CVE) ID: CVE-2023-38104
ZDI-23-1008
https://www.zerodayinitiative.com/advisories/ZDI-23-1008/
Common Vulnerability Exposure (CVE) ID: CVE-2023-40474
ZDI-23-1456
https://www.zerodayinitiative.com/advisories/ZDI-23-1456/
https://gstreamer.freedesktop.org/security/sa-2023-0006.html
Common Vulnerability Exposure (CVE) ID: CVE-2023-40475
ZDI-23-1457
https://www.zerodayinitiative.com/advisories/ZDI-23-1457/
https://gstreamer.freedesktop.org/security/sa-2023-0007.html
Common Vulnerability Exposure (CVE) ID: CVE-2023-40476
ZDI-23-1458
https://www.zerodayinitiative.com/advisories/ZDI-23-1458/
https://gstreamer.freedesktop.org/security/sa-2023-0008.html
Common Vulnerability Exposure (CVE) ID: CVE-2023-44429
ZDI-23-1648
https://www.zerodayinitiative.com/advisories/ZDI-23-1648/
https://gstreamer.freedesktop.org/security/sa-2023-0009.html
Common Vulnerability Exposure (CVE) ID: CVE-2023-44446
ZDI-23-1647
https://www.zerodayinitiative.com/advisories/ZDI-23-1647/
https://gstreamer.freedesktop.org/security/sa-2023-0010.html
CopyrightCopyright (C) 2023 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.