Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
146377 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.856486
Categoría:openSUSE Local Security Checks
Título:openSUSE Security Advisory (SUSE-SU-2024:3289-1)
Resumen:The remote host is missing an update for the 'gstreamer-plugins-bad, libvpl' package(s) announced via the SUSE-SU-2024:3289-1 advisory.
Descripción:Summary:
The remote host is missing an update for the 'gstreamer-plugins-bad, libvpl' package(s) announced via the SUSE-SU-2024:3289-1 advisory.

Vulnerability Insight:
This update for gstreamer-plugins-bad, libvpl fixes the following issues:

- Dropped support for libmfx to fix the following CVEs:
* libmfx: improper input validation (CVE-2023-48368, bsc#1226897)
* libmfx: improper buffer restrictions (CVE-2023-45221, bsc#1226898)
* libmfx: out-of-bounds read (CVE-2023-22656, bsc#1226899)
* libmfx: out-of-bounds write (CVE-2023-47282, bsc#1226900)
* libmfx: improper buffer restrictions (CVE-2023-47169, bsc#1226901)

The libmfx dependency is replaced by libvpl.

Affected Software/OS:
'gstreamer-plugins-bad, libvpl' package(s) on openSUSE Leap 15.5.

Solution:
Please install the updated package(s).

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2023-22656
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00935.html
Common Vulnerability Exposure (CVE) ID: CVE-2023-45221
Common Vulnerability Exposure (CVE) ID: CVE-2023-47169
Common Vulnerability Exposure (CVE) ID: CVE-2023-47282
Common Vulnerability Exposure (CVE) ID: CVE-2023-48368
Common Vulnerability Exposure (CVE) ID: CVE-2023-50186
ZDI-24-368
https://www.zerodayinitiative.com/advisories/ZDI-24-368/
vendor-provided URL
https://gstreamer.freedesktop.org/security/sa-2023-0011.html
CopyrightCopyright (C) 2024 Greenbone AG

Esta es sólo una de 146377 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.