Alerts This Week
Warning Icon 1 1,154
Alerts This Week
Warning Icon 1 1,154

Ubuntu 20.10: USN-4959-1 Moderate Risk GStreamer Information Exposure

ubuntu
Calendar Grey May 18, 2021
Dist Ubuntu Esm H88
The Ubuntu Security Notice USN-4959-1 tackles a vulnerability in GStreamer Base Plugins which may lead to the unintended disclosure of confidential data.
GStreamer Base Plugins could be made to expose sensitive information if it received a specially crafted input.

Summary

GStreamer Base Plugins could be made to expose sensitive information if it received

a specially crafted input.

Software Description:

- gst-plugins-base1.0: GStreamer plugins

Details:

It was discovered that GStreamer Base Plugins incorrectly handled certain inputs.

An attacker could possibly use this issue to expose sensitive information.

Update Instructions

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 20.10:
  gstreamer1.0-plugins-base       1.18.0-2ubuntu0.1

Ubuntu 20.04 LTS:
  gstreamer1.0-plugins-base       1.16.2-4ubuntu0.1

Ubuntu 18.04 LTS:
  gstreamer1.0-plugins-base       1.14.5-0ubuntu1~18.04.3

Ubuntu 16.04 ESM:
  gstreamer1.0-plugins-base       1.8.3-1ubuntu0.3+esm1

In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-4959-1

CVE-2021-3522

Severity
important
Lowest
Low
Medium
High
Critical

May 18, 2021

Package Information

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here