Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.851457
Kategorie:SuSE Local Security Checks
Titel:openSUSE: Security Advisory for gstreamer-plugins-bad (openSUSE-SU-2016:3158-1)
Zusammenfassung:The remote host is missing an update for the 'gstreamer-plugins-bad'; package(s) announced via the referenced advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'gstreamer-plugins-bad'
package(s) announced via the referenced advisory.

Vulnerability Insight:
This update for gstreamer-plugins-bad fixes the following issues:

- Maliciously crafted VMnc (VMware video) streams (typically contained in
.avi files) could cause code execution during decoding or information
leaks due to an uninitialized buffer (CVE-2016-9445, CVE-2016-9446,
boo#1010829).

Affected Software/OS:
gstreamer-plugins-bad on openSUSE Leap 42.1, openSUSE 13.2

Solution:
Please install the updated package(s).

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2016-9445
BugTraq ID: 94421
http://www.securityfocus.com/bid/94421
https://security.gentoo.org/glsa/201705-10
https://scarybeastsecurity.blogspot.de/2016/11/0day-poc-risky-design-decisions-in.html
http://www.openwall.com/lists/oss-security/2016/11/18/12
http://www.openwall.com/lists/oss-security/2016/11/18/13
RedHat Security Advisories: RHSA-2016:2974
http://rhn.redhat.com/errata/RHSA-2016-2974.html
RedHat Security Advisories: RHSA-2017:0018
http://rhn.redhat.com/errata/RHSA-2017-0018.html
RedHat Security Advisories: RHSA-2017:0021
http://rhn.redhat.com/errata/RHSA-2017-0021.html
Common Vulnerability Exposure (CVE) ID: CVE-2016-9446
BugTraq ID: 94423
http://www.securityfocus.com/bid/94423
RedHat Security Advisories: RHSA-2017:2060
https://access.redhat.com/errata/RHSA-2017:2060
CopyrightCopyright (C) 2016 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.