USN-7175-1: GStreamer Base Plugins vulnerabilities
Antonio Morales discovered that GStreamer Base Plugins incorrectly handled certain malformed media files. An attacker could use these issues to cause GStreamer Base Plugins to crash, resulting in a denial of service, or possibly execute arbitrary code.
Affected Software
Event History
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
What is the severity of USN-7175-1?
USN-7175-1 has been assigned a high severity rating due to potential denial of service and arbitrary code execution risks.
How do I fix USN-7175-1?
To fix USN-7175-1, upgrade to the correct patched version of the affected packages, specifically 1.24.8-1ubuntu0.1 or later.
What packages are affected by USN-7175-1?
Affected packages include gstreamer1.0-alsa, gstreamer1.0-gl, gstreamer1.0-plugins-base, and others listed under this advisory.
What is the exploit vector for USN-7175-1?
The exploit vector for USN-7175-1 involves malformed media files processed by GStreamer Base Plugins.
Is there a risk of data loss with USN-7175-1?
While the primary risk with USN-7175-1 is denial of service and possible arbitrary code execution, data loss may occur indirectly depending on the specific exploit.