First published: Mon Feb 02 2009(Updated: )
Heap-based buffer overflow in the qtdemux_parse_samples function in gst/qtdemux/qtdemux.c in GStreamer Good Plug-ins (aka gst-plugins-good) 0.10.9 through 0.10.11 might allow remote attackers to execute arbitrary code via crafted Composition Time To Sample (ctts) atom data in a malformed QuickTime media .mov file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GStreamer Good Plug-ins | =0.10.10 | |
GStreamer Good Plug-ins | =0.10.9 | |
GStreamer Good Plug-ins | =0.10.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.