Back to bug 1401880

Who When What Removed Added
Adam Mariš 2016-12-06 12:36:02 UTC Blocks 1401937
Adam Mariš 2016-12-06 12:39:30 UTC Depends On 1401945
Adam Mariš 2016-12-06 12:39:39 UTC Depends On 1401946
Adam Mariš 2016-12-06 12:39:50 UTC Depends On 1401947
Adam Mariš 2016-12-06 12:39:56 UTC Depends On 1401948
Slawomir Czarko 2016-12-07 07:52:16 UTC CC slawomir
Dhiru Kholia 2016-12-23 10:44:09 UTC CC dkholia
Summary CVE-2016-9809 gstreamer: Off by one read in gst_h264_parse_set_caps CVE-2016-9809 gstreamer-plugins-bad-free: Off by one read in gst_h264_parse_set_caps
Dhiru Kholia 2016-12-23 10:52:43 UTC Doc Text An out-of-bounds heap read flaw was found in GStreamer's H.264 parser. A remote attacker could use this flaw to cause an application using GStreamer to crash.
Dhiru Kholia 2016-12-23 10:53:26 UTC Whiteboard impact=low,public=20161123,reported=20161201,source=oss-security,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,cvss3=3.1/CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L,cwe=CWE-193,rhel-6/gstreamer-plugins-bad-free=new,rhel-7/gstreamer-plugins-bad-free=new,rhel-7/gstreamer1-plugins-bad-free=new,rhev-m-3/mingw-virt-viewer=new,fedora-all/gstreamer-plugins-bad-free=affected,fedora-all/gstreamer1-plugins-bad-free=affected,fedora-all/mingw-gstreamer-plugins-bad-free=affected,fedora-all/mingw-gstreamer1-plugins-bad-free=affected impact=low,public=20161123,reported=20161201,source=oss-security,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,cvss3=3.1/CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L,cwe=CWE-193,rhel-6/gstreamer-plugins-bad-free=new,rhel-7/gstreamer-plugins-bad-free=new,rhel-7/gstreamer1-plugins-bad-free=affected,rhev-m-3/mingw-virt-viewer=new,fedora-all/gstreamer-plugins-bad-free=affected,fedora-all/gstreamer1-plugins-bad-free=affected,fedora-all/mingw-gstreamer-plugins-bad-free=affected,fedora-all/mingw-gstreamer1-plugins-bad-free=affected
Dhiru Kholia 2016-12-23 10:54:16 UTC Depends On 1408423
Dhiru Kholia 2016-12-23 10:54:22 UTC Depends On 1408424
Dhiru Kholia 2016-12-23 11:05:56 UTC Whiteboard impact=low,public=20161123,reported=20161201,source=oss-security,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,cvss3=3.1/CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L,cwe=CWE-193,rhel-6/gstreamer-plugins-bad-free=new,rhel-7/gstreamer-plugins-bad-free=new,rhel-7/gstreamer1-plugins-bad-free=affected,rhev-m-3/mingw-virt-viewer=new,fedora-all/gstreamer-plugins-bad-free=affected,fedora-all/gstreamer1-plugins-bad-free=affected,fedora-all/mingw-gstreamer-plugins-bad-free=affected,fedora-all/mingw-gstreamer1-plugins-bad-free=affected impact=low,public=20161123,reported=20161201,source=oss-security,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,cvss3=3.1/CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L,cwe=CWE-193,rhel-6/gstreamer-plugins-bad-free=new,rhel-7/gstreamer-plugins-bad-free=affected,rhel-7/gstreamer1-plugins-bad-free=affected,rhev-m-3/mingw-virt-viewer=new,fedora-all/gstreamer-plugins-bad-free=affected,fedora-all/gstreamer1-plugins-bad-free=affected,fedora-all/mingw-gstreamer-plugins-bad-free=affected,fedora-all/mingw-gstreamer1-plugins-bad-free=affected
Dhiru Kholia 2016-12-23 11:06:43 UTC Depends On 1408429
Dhiru Kholia 2016-12-23 11:06:48 UTC Depends On 1408430
Dhiru Kholia 2016-12-26 07:25:23 UTC Summary CVE-2016-9809 gstreamer-plugins-bad-free: Off by one read in gst_h264_parse_set_caps CVE-2016-9809 gstreamer-plugins-bad-free: Off-by-one read in gst_h264_parse_set_caps
Dhiru Kholia 2017-01-16 08:36:01 UTC Whiteboard impact=low,public=20161123,reported=20161201,source=oss-security,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,cvss3=3.1/CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L,cwe=CWE-193,rhel-6/gstreamer-plugins-bad-free=new,rhel-7/gstreamer-plugins-bad-free=affected,rhel-7/gstreamer1-plugins-bad-free=affected,rhev-m-3/mingw-virt-viewer=new,fedora-all/gstreamer-plugins-bad-free=affected,fedora-all/gstreamer1-plugins-bad-free=affected,fedora-all/mingw-gstreamer-plugins-bad-free=affected,fedora-all/mingw-gstreamer1-plugins-bad-free=affected impact=low,public=20161123,reported=20161201,source=oss-security,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,cvss3=3.1/CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L,cwe=CWE-193,rhel-6/gstreamer-plugins-bad-free=notaffected,rhel-7/gstreamer-plugins-bad-free=affected,rhel-7/gstreamer1-plugins-bad-free=affected,rhev-m-3/mingw-virt-viewer=wontfix,fedora-all/gstreamer-plugins-bad-free=affected,fedora-all/gstreamer1-plugins-bad-free=affected,fedora-all/mingw-gstreamer-plugins-bad-free=affected,fedora-all/mingw-gstreamer1-plugins-bad-free=affected
Dhiru Kholia 2017-01-16 08:36:44 UTC Status NEW CLOSED
Resolution --- ERRATA
Last Closed 2017-01-16 03:36:44 UTC
Product Security DevOps Team 2019-09-29 14:01:53 UTC Whiteboard impact=low,public=20161123,reported=20161201,source=oss-security,cvss2=2.6/AV:N/AC:H/Au:N/C:N/I:N/A:P,cvss3=3.1/CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L,cwe=CWE-193,rhel-6/gstreamer-plugins-bad-free=notaffected,rhel-7/gstreamer-plugins-bad-free=affected,rhel-7/gstreamer1-plugins-bad-free=affected,rhev-m-3/mingw-virt-viewer=wontfix,fedora-all/gstreamer-plugins-bad-free=affected,fedora-all/gstreamer1-plugins-bad-free=affected,fedora-all/mingw-gstreamer-plugins-bad-free=affected,fedora-all/mingw-gstreamer1-plugins-bad-free=affected

Back to bug 1401880