CVE-2016-9445: Buffer Overflow
Published Jan 23, 2017
·Updated
Integer overflow in the vmnc decoder in the gstreamer allows remote attackers to cause a denial of service (crash) via large width and height values, which triggers a buffer overflow.
Affected Software
2 affected components
Gstreamer Project Gstreamer=1.10.0
GStreamer GStreamer=1.10.0
Remediation
Event History
Jan 23, 2017
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Data Sourced
via NVD·09:59 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2016-9445?
CVE-2016-9445 has a severity rating that indicates a potential for denial of service due to an integer overflow vulnerability.
2
How do I fix CVE-2016-9445?
To fix CVE-2016-9445, update GStreamer to a version later than 1.10.0 that addresses this vulnerability.
3
What types of attacks can be executed using CVE-2016-9445?
CVE-2016-9445 can be exploited by remote attackers to cause a denial of service through crashing the GStreamer application.
4
Where is CVE-2016-9445 typically found?
CVE-2016-9445 is typically found in the GStreamer software, specifically versions around 1.10.0.
5
What components of GStreamer are affected by CVE-2016-9445?
CVE-2016-9445 affects the vmnc decoder component of GStreamer.