Oval Definition:oval:org.opensuse.security:def:58461
Revision Date:2020-12-01Version:1
Title:Security update for gstreamer-plugins-bad (Important)
Description:



This update for gstreamer-plugins-bad fixes the following issues:

- CVE-2016-9809: Malicious mkv/h264 file could cause an off by one out of bounds read and lead to crash (bsc#1013659) - CVE-2016-9812: Malicious mpeg file could cause invalid a null pointer access and lead to crash (bsc#1013678) - CVE-2016-9813: Malicious mpegts file could cause invalid a null pointer access and lead to crash (bsc#1013680) - CVE-2016-9445, CVE-2016-9446: Check an integer overflow and initialize a buffer in vmncdec (bsc#1010829)
Family:unixClass:patch
Status:Reference(s):1010829
1012382
1012917
1013659
1013678
1013680
1019784
1022476
1031717
1037559
1038078
1038085
1043652
1045986
1048585
1052360
1053364
1060279
1064127
1066223
1066842
1067841
1067844
1068032
1068038
1068569
1068984
1069160
1069257
1070799
1072163
1072484
1072589
1073229
1073928
1074134
1074392
1074488
1074621
1074709
1074839
1074847
1075066
1075078
1075087
1075091
1075428
1075617
1075621
1075627
1075994
1076017
1076110
1076806
1076809
1076872
1076899
1077068
1077560
1077592
1078526
1078681
1102840
1104662
1118277
1120489
1120813
1127458
1138954
1144327
1144379
1149792
1150584
1152711
1153471
1154212
1155789
1155952
1157860
1158442
1160039
1168930
1169511
1169605
1169786
1169936
1170302
1170601
1170741
1170939
1171863
1171864
1171866
1172277
1173580
963844
988524
CVE-2016-9445
CVE-2016-9446
CVE-2016-9809
CVE-2016-9812
CVE-2016-9813
CVE-2017-1000368
CVE-2017-12836
CVE-2017-15098
CVE-2017-15099
CVE-2017-15129
CVE-2017-15638
CVE-2017-16899
CVE-2017-17712
CVE-2017-17862
CVE-2017-17864
CVE-2017-18017
CVE-2017-5715
CVE-2017-6967
CVE-2017-8779
CVE-2018-1000004
CVE-2018-19788
CVE-2018-20217
CVE-2018-5332
CVE-2018-5333
CVE-2019-2933
CVE-2019-2945
CVE-2019-2962
CVE-2019-2964
CVE-2019-2973
CVE-2019-2978
CVE-2019-2981
CVE-2019-2983
CVE-2019-2989
CVE-2019-2992
CVE-2019-2999
CVE-2019-3840
CVE-2020-10543
CVE-2020-10878
CVE-2020-11008
CVE-2020-12723
CVE-2020-2654
CVE-2020-2756
CVE-2020-2757
CVE-2020-2781
CVE-2020-2800
CVE-2020-2803
CVE-2020-2805
CVE-2020-2830
CVE-2020-4044
CVE-2020-5260
SUSE-SU-2016:3297-1
SUSE-SU-2017:1328-1
SUSE-SU-2017:1771-1
SUSE-SU-2017:2419-1
SUSE-SU-2017:2932-1
SUSE-SU-2017:3391-1
SUSE-SU-2018:0231-1
SUSE-SU-2018:0416-1
SUSE-SU-2019:0111-1
SUSE-SU-2019:0553-1
SUSE-SU-2020:0051-1
SUSE-SU-2020:1943-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • grep-3.1-lp150.2 is installed
  • OR grep-lang-3.1-lp150.2 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • ncat-7.70-lp151.3.3 is installed
  • OR ndiff-7.70-lp151.3.3 is installed
  • OR nmap-7.70-lp151.3.3 is installed
  • OR nping-7.70-lp151.3.3 is installed
  • OR zenmap-7.70-lp151.3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • gstreamer-plugins-bad-1.2.4-3.4 is installed
  • OR libgstegl-1_0-0-1.2.4-3.4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • krb5-1.12.5-40.31 is installed
  • OR krb5-32bit-1.12.5-40.31 is installed
  • OR krb5-client-1.12.5-40.31 is installed
  • OR krb5-doc-1.12.5-40.31 is installed
  • OR krb5-plugin-kdb-ldap-1.12.5-40.31 is installed
  • OR krb5-plugin-preauth-otp-1.12.5-40.31 is installed
  • OR krb5-plugin-preauth-pkinit-1.12.5-40.31 is installed
  • OR krb5-server-1.12.5-40.31 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • libpolkit0-0.113-5.15 is installed
  • OR polkit-0.113-5.15 is installed
  • OR typelib-1_0-Polkit-1_0-0.113-5.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • libvirt-2.0.0-27.48 is installed
  • OR libvirt-client-2.0.0-27.48 is installed
  • OR libvirt-daemon-2.0.0-27.48 is installed
  • OR libvirt-daemon-config-network-2.0.0-27.48 is installed
  • OR libvirt-daemon-config-nwfilter-2.0.0-27.48 is installed
  • OR libvirt-daemon-driver-interface-2.0.0-27.48 is installed
  • OR libvirt-daemon-driver-libxl-2.0.0-27.48 is installed
  • OR libvirt-daemon-driver-lxc-2.0.0-27.48 is installed
  • OR libvirt-daemon-driver-network-2.0.0-27.48 is installed
  • OR libvirt-daemon-driver-nodedev-2.0.0-27.48 is installed
  • OR libvirt-daemon-driver-nwfilter-2.0.0-27.48 is installed
  • OR libvirt-daemon-driver-qemu-2.0.0-27.48 is installed
  • OR libvirt-daemon-driver-secret-2.0.0-27.48 is installed
  • OR libvirt-daemon-driver-storage-2.0.0-27.48 is installed
  • OR libvirt-daemon-hooks-2.0.0-27.48 is installed
  • OR libvirt-daemon-lxc-2.0.0-27.48 is installed
  • OR libvirt-daemon-qemu-2.0.0-27.48 is installed
  • OR libvirt-daemon-xen-2.0.0-27.48 is installed
  • OR libvirt-doc-2.0.0-27.48 is installed
  • OR libvirt-lock-sanlock-2.0.0-27.48 is installed
  • OR libvirt-nss-2.0.0-27.48 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND davfs2-1.5.2-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • ghostscript-9.27-23.28 is installed
  • OR ghostscript-x11-9.27-23.28 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND ucode-intel-20191112a-13.56 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • nfs-client-1.3.0-34.22 is installed
  • OR nfs-doc-1.3.0-34.22 is installed
  • OR nfs-kernel-server-1.3.0-34.22 is installed
  • OR nfs-utils-1.3.0-34.22 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • exiv2-0.23-12.5 is installed
  • OR libexiv2-12-0.23-12.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • dracut-044.1-9 is installed
  • OR dracut-fips-044.1-9 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND ansible-2.4.6.0-3.6 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • bzip2-1.0.6-30.8 is installed
  • OR bzip2-doc-1.0.6-30.8 is installed
  • OR libbz2-1-1.0.6-30.8 is installed
  • OR libbz2-1-32bit-1.0.6-30.8 is installed
  • BACK