Oval Definition:
oval:org.opensuse.security:def:202015395
Revision Date
:
2022-05-22
Version
:
1
Title
:
CVE-2020-15395
Description
:
In MediaInfoLib in MediaArea MediaInfo 20.03, there is a stack-based buffer over-read in Streams_Fill_PerStream in Multiple/File_MpegPs.cpp (aka an off-by-one during MpegPs parsing).
Family
:
unix
Class
:
vulnerability
Status
:
Reference(s)
:
CVE-2020-15395
Mitre CVE-2020-15395
SUSE CVE-2020-15395
Platform(s)
:
openSUSE Leap 15.2
Product(s)
:
Definition Synopsis
openSUSE Leap 15.2 is installed
AND
Package Information
kf5-mediainfo-20.08-lp152.4.3.1 is installed
AND
kf5-mediainfo is signed with openSUSE key
OR
libmediainfo-devel-20.08-lp152.4.3.1 is installed
AND
libmediainfo-devel is signed with openSUSE key
OR
libmediainfo0-20.08-lp152.4.3.1 is installed
AND
libmediainfo0 is signed with openSUSE key
OR
libmediainfo0-32bit-20.08-lp152.4.3.1 is installed
AND
libmediainfo0-32bit is signed with openSUSE key
OR
mediainfo-20.08-lp152.4.3.1 is installed
AND
mediainfo is signed with openSUSE key
OR
mediainfo-gui-20.08-lp152.4.3.1 is installed
AND
mediainfo-gui is signed with openSUSE key
BACK