Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Mageia: 2022-0322 Moderate: GStreamer Security Threats Identified

mageia
Calendar Grey September 10, 2022
Dist Mageia Esm H88
Mageia 2022-0330 resolves security vulnerabilities in gstreamer1.0-plugins-bad to mitigate possible code execution threats.
It was discovered that GStreamer Good Plugins incorrectly handled certain files

Summary

It was discovered that GStreamer Good Plugins incorrectly handled certain files. An attacker could possibly use this issue to execute arbitrary code. (CVE-2022-1920, CVE-2022-1921)
It was discovered that GStreamer Good Plugins incorrectly handled certain files. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. (CVE-2022-1922, CVE-2022-1923, CVE-2022-1924, CVE-2022-1925, CVE-2022-2122)

References

- https://bugs.mageia.org/show_bug.cgi?id=30728

- https://ubuntu.com/security/notices/USN-5555-1

-

-

-

-

- https://lists.debian.org/debian-security-announce/2022/msg00173.html

- https://www.cve.org/CVERecord?id=CVE-2022-1920

- https://www.cve.org/CVERecord?id=CVE-2022-1921

- https://www.cve.org/CVERecord?id=CVE-2022-1922

- https://www.cve.org/CVERecord?id=CVE-2022-1923

- https://www.cve.org/CVERecord?id=CVE-2022-1924

- https://www.cve.org/CVERecord?id=CVE-2022-1925

- https://www.cve.org/CVERecord?id=CVE-2022-2122

Resolution

SRPMS

- 8/core/gstreamer1.0-plugins-good-1.18.5-1.1.mga8

Publication date: 10 Sep 2022
URL: https://advisories.mageia.org/MGASA-2022-0322.html
Type: security
CVE: CVE-2022-1920, CVE-2022-1921, CVE-2022-1922, CVE-2022-1923, CVE-2022-1924, CVE-2022-1925, CVE-2022-2122

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here