CVE-2017-5843: Use After Free
A use-after-free vulnerability was found in gstminiobjectunref / gsttaglistunref / gstmxfdemuxupdateessencetracks.
Upstream bug:
https://bugzilla.gnome.org/showbug.cgi?id=777503
Upstream patch:
https://github.com/GStreamer/gst-plugins-bad/commit/08723e6
CVE assignment:
http://seclists.org/oss-sec/2017/q1/284
Other sources
Multiple use-after-free vulnerabilities in the (1) gstminiobjectunref, (2) gsttaglistunref, and (3) gstmxfdemuxupdateessencetracks functions in GStreamer before 1.10.3 allow remote attackers to cause a denial of service (crash) via vectors involving stream tags, as demonstrated by 02785736.mxf.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/gstreamer1-plugins-bad-freeto a version that resolves this vulnerability.Fixed in 1.10.3 - Upgrade
Upgrade
GStreamerto a version that resolves this vulnerability.Fixed in 1.10.3 - Compensating control
If immediate upgrade is not possible, mitigate crash impact by restricting untrusted media ingestion (e.g., do not process attacker-supplied streams/tags) until GStreamer is upgraded to 1.10.3 or the upstream fix is applied.
Event History
Frequently Asked Questions
What are the main vulnerabilities associated with CVE-2017-5843?
CVE-2017-5843 includes multiple use-after-free vulnerabilities in functions related to GStreamer that can lead to denial of service via stream tags.
What is the severity of CVE-2017-5843?
CVE-2017-5843 is considered a serious vulnerability due to its potential to cause crashes and service disruptions.
How do I fix CVE-2017-5843?
To fix CVE-2017-5843, update GStreamer to version 1.10.3 or later.
Which versions of GStreamer are affected by CVE-2017-5843?
CVE-2017-5843 affects GStreamer versions prior to 1.10.3.
Can CVE-2017-5843 be exploited remotely?
Yes, CVE-2017-5843 can be exploited remotely by attackers through specially crafted stream tags.