VDB
BDU%3A2023-04883
BDU%3A2023-04883
PUBLISHED
CVSS 10 CRITICAL
Уязвимость компонента MDPR мультимедийного фреймворка Gstreamer, позволяющая нарушителю выполнить произвольный код
Risk Scores
CVSS 2.0
10
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| ООО «РусБИТех-Астра», Novell Inc., Сообщество GStreamer | Astra Linux Special Edition (запись в едином реестре российских программ №369), Suse Linux Enterprise Server, SUSE Linux Enterprise Server for SAP Applications, Gstreamer |
Timeline
- Aug 24, 2023 CVE Published
- Sep 24, 2024 CVE Updated
References
- https://www.zerodayinitiative.com/advisories/ZDI-23-1008/ url
- https://gitlab.freedesktop.org/gstreamer/gstreamer/uploads/d4a0aa4ec2165f6c418703b9e1459d8b/0002-rmdemux-Check-for-integer-overflow-when-calculation-.patch url
- https://www.suse.com/security/cve/CVE-2023-38104.html url
- https://www.cybersecurity-help.cz/vdb/SB2023080801 url
- https://wiki.astralinux.ru/astra-linux-se17-bulletin-2023-1023SE17 advisory