USN-6269-1: GStreamer Good Plugins vulnerability
It was discovered that GStreamer Good Plugins incorrectly handled certain FLAC image tags. A remote attacker could use this issue to cause GStreamer Good Plugins to crash, resulting in a denial of service, or possibly execute arbitrary code. (CVE-2023-37327)
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-6269-1?
USN-6269-1 has a severity classified as high due to potential for denial of service and arbitrary code execution.
How do I fix USN-6269-1?
To mitigate the vulnerability USN-6269-1, update GStreamer Good Plugins to version 1.22.1-1ubuntu1.2 or later on Ubuntu 23.04, 1.20.3-0ubuntu1.1 or later on Ubuntu 22.04, or 1.16.3-0ubuntu1.2 or later on Ubuntu 20.04.
What causes the vulnerability USN-6269-1?
The vulnerability USN-6269-1 is caused by improper handling of certain FLAC image tags by GStreamer Good Plugins.
Which versions of GStreamer are affected by USN-6269-1?
USN-6269-1 affects GStreamer Good Plugins versions prior to 1.22.1-1ubuntu1.2 for Ubuntu 23.04, 1.20.3-0ubuntu1.1 for Ubuntu 22.04, and 1.16.3-0ubuntu1.2 for Ubuntu 20.04.
Can USN-6269-1 lead to remote code execution?
Yes, USN-6269-1 can potentially allow a remote attacker to execute arbitrary code.