CVE-2024-47540: GHSL-2024-197: Uninitialized variable in gst_matroska_demux_add_wvpk_header leading to function pointer overwriting in GStreamer - CVE-2024-47540

Published Dec 11, 2024
·
Updated

GStreamer is a library for constructing graphs of media-handling components. An uninitialized stack variable vulnerability has been identified in the gstmatroskademuxaddwvpkheader function within matroska-demux.c. When size < 4, the program calls gstbufferunmap with an uninitialized map variable. Then, in the gstmemoryunmap function, the program will attempt to unmap the buffer using the uninitialized map variable, causing a function pointer hijack, as it will jump to mem->allocator->memunmapfull or mem->allocator->memunmap. This vulnerability could allow an attacker to hijack the execution flow, potentially leading to code execution. This vulnerability is fixed in 1.24.10.

Affected Software

3 affected componentsFixes available
Gstreamer Project Gstreamer<1.24.10
debian/gst-plugins-good1.0<=1.18.4-2+deb11u2
1.18.4-2+deb11u31.22.0-5+deb12u21.26.0-1
GStreamer GStreamer<1.24.10

Event History

Dec 11, 2024
Advisory Published
via GitHub Security Lab·12:00 AM
Data Sourced
via GitHub Security Lab·12:00 AM
DescriptionAffected Software
CVE Published
via MITRE·06:54 PM
Data Sourced
via MITRE·06:54 PM
DescriptionWeakness
Data Sourced
via Red Hat·07:01 PM
DescriptionSeverityAffected Software
Dec 12, 2024
Data Sourced
via NVD·02:03 AM
RemedyDescriptionSeverityWeaknessAffected Software
Dec 22, 2024
Data Sourced
via Ubuntu·03:20 PM
RemedyDescriptionSeverityAffected Software
Jul 30, 58399
Event
via NVD·07:02 AM
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2024-47540?

CVE-2024-47540 has been classified as a high severity vulnerability due to the potential for exploitation through uninitialized stack variables.

2

How do I fix CVE-2024-47540?

To remediate CVE-2024-47540, update the GStreamer library to version 1.22.0-5+deb12u2 or later if using Debian.

3

What software is affected by CVE-2024-47540?

CVE-2024-47540 affects GStreamer versions below 1.24.11 and certain versions of the gst-plugins-good1.0 package.

4

What specific function is vulnerable in CVE-2024-47540?

The vulnerability in CVE-2024-47540 exists in the gst_matroska_demux_add_wvpk_header function within matroska-demux.c.

5

Can CVE-2024-47540 lead to remote code execution?

Yes, the exploitation of CVE-2024-47540 may lead to remote code execution due to improper handling of memory.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203