Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.856905
Category:openSUSE Local Security Checks
Title:openSUSE Security Advisory (SUSE-SU-2025:0055-1)
Summary:The remote host is missing an update for the 'gstreamer-plugins-good' package(s) announced via the SUSE-SU-2025:0055-1 advisory.
Description:Summary:
The remote host is missing an update for the 'gstreamer-plugins-good' package(s) announced via the SUSE-SU-2025:0055-1 advisory.

Vulnerability Insight:
This update for gstreamer-plugins-good fixes the following issues:

- CVE-2024-47606: Fixed an integer overflows in MP4/MOV demuxer and memory allocator that can lead to out-of-bounds writes. (boo#1234449)
- CVE-2024-47537: Fixed an out-of-bounds write in isomp4/qtdemux.c. (boo#1234414)
- CVE-2024-47539: Fixed an out-of-bounds write in convert_to_s334_1a. (boo#1234417)
- CVE-2024-47530: Fixed an uninitialized stack memory in Matroska/WebM demuxer. (boo#1234421)
- CVE-2024-47596: Fixed an integer underflow in MP4/MOV demuxer that can lead to out-of-bounds reads. (boo#1234424)
- CVE-2024-47597: Fixed an out-of-bounds reads in MP4/MOV demuxer sample table parser (boo#1234425)
- CVE-2024-47598: Fixed MP4/MOV sample table parser out-of-bounds read. (boo#1234426)
- CVE-2024-47599: Fixed insufficient error handling in JPEG decoder that can lead to NULL-pointer dereferences. (boo#1234427)
- CVE-2024-47601: Fixed a NULL-pointer dereference in Matroska/WebM demuxer. (boo#1234428)
- CVE-2024-47602: Fixed a NULL-pointer dereferences and out-of-bounds reads in Matroska/WebM demuxer. (boo#1234432)
- CVE-2024-47603: Fixed a NULL-pointer dereference in Matroska/WebM demuxer. (boo#1234433)
- CVE-2024-47775: Fixed various out-of-bounds reads in WAV parser. (boo#1234434)
- CVE-2024-47776: Fixed various out-of-bounds reads in WAV parser. (boo#1234435)
- CVE-2024-47777: Fixed various out-of-bounds reads in WAV parser. (boo#1234436)
- CVE-2024-47778: Fixed various out-of-bounds reads in WAV parser. (boo#1234439)
- CVE-2024-47834: Fixed a use-after-free in the Matroska demuxer that can cause crashes for certain input files. (boo#1234440)
- CVE-2024-47774: Fixed an integer overflow in AVI subtitle parser that leads to out-of-bounds reads. (boo#1234446)
- CVE-2024-47613: Fixed a NULL-pointer dereference in gdk-pixbuf decoder. (boo#1234447)
- CVE-2024-47543: Fixed an out-of-bounds write in qtdemux_parse_container. (boo#1234462)
- CVE-2024-47544: Fixed a NULL-pointer dereferences in MP4/MOV demuxer CENC handling. (boo#1234473)
- CVE-2024-47545: Fixed an integer underflow in FOURCC_strf parsing leading to out-of-bounds read. (boo#1234476)
- CVE-2024-47546: Fixed an integer underflow in extract_cc_from_data leading to out-of-bounds read. (boo#1234477)

Affected Software/OS:
'gstreamer-plugins-good' package(s) on openSUSE Leap 15.6.

Solution:
Please install the updated package(s).

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2024-47530
Common Vulnerability Exposure (CVE) ID: CVE-2024-47537
Common Vulnerability Exposure (CVE) ID: CVE-2024-47539
Common Vulnerability Exposure (CVE) ID: CVE-2024-47543
Common Vulnerability Exposure (CVE) ID: CVE-2024-47544
Common Vulnerability Exposure (CVE) ID: CVE-2024-47545
Common Vulnerability Exposure (CVE) ID: CVE-2024-47546
Common Vulnerability Exposure (CVE) ID: CVE-2024-47596
Common Vulnerability Exposure (CVE) ID: CVE-2024-47597
Common Vulnerability Exposure (CVE) ID: CVE-2024-47598
Common Vulnerability Exposure (CVE) ID: CVE-2024-47599
Common Vulnerability Exposure (CVE) ID: CVE-2024-47601
Common Vulnerability Exposure (CVE) ID: CVE-2024-47602
Common Vulnerability Exposure (CVE) ID: CVE-2024-47603
Common Vulnerability Exposure (CVE) ID: CVE-2024-47606
Common Vulnerability Exposure (CVE) ID: CVE-2024-47613
Common Vulnerability Exposure (CVE) ID: CVE-2024-47774
Common Vulnerability Exposure (CVE) ID: CVE-2024-47775
Common Vulnerability Exposure (CVE) ID: CVE-2024-47776
Common Vulnerability Exposure (CVE) ID: CVE-2024-47777
Common Vulnerability Exposure (CVE) ID: CVE-2024-47778
Common Vulnerability Exposure (CVE) ID: CVE-2024-47834
CopyrightCopyright (C) 2025 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.