Oval Definition:
oval:com.ubuntu.xenial:def:20175840000
Revision Date
:
2017-02-09
Version
:
1
Title
:
CVE-2017-5840 on Ubuntu 16.04 LTS (xenial) - low.
Description
:
The qtdemux_parse_samples function in gst/isomp4/qtdemux.c in gst-plugins-good in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (out-of-bounds heap read) via vectors involving the current stts index.
Family
:
unix
Class
:
vulnerability
Status
:
Reference(s)
:
CVE-2017-5840
Platform(s)
:
Ubuntu 16.04 LTS
Product(s)
:
Definition Synopsis
Ubuntu 16.04 LTS (xenial) is installed.
AND
Package Information
The 'gst-plugins-good0.10' package in xenial was vulnerable but has been fixed (note: '0.10.31-3+nmu4ubuntu2.16.04.3').
OR
The 'gst-plugins-good1.0' package in xenial was vulnerable but has been fixed (note: '1.8.3-1ubuntu0.4').
BACK