VDB
GCVE-VVD-MAGEIA-2018-12
GCVE-VVD-MAGEIA-2018-12
Advisory Published
Chris Evans discovered that the GStreamer plugin to decode VMware screen
capture files allowed the execution of arbitrary code (CVE-2016-9445,
CVE-2016-9446).
Chris Evans discovered that the GStreamer 0.10 plugin to decode NES Sound
Format files allowed the execution of arbitrary code (CVE-2016-9447).
Hanno Boeck discovered multiple vulnerabilities in the GStreamer media
framework and its codecs and demuxers, which may result in denial of
service or the execution of arbitrary code if a malformed media file is
opened (CVE-2016-9809, CVE-2016-9812, CVE-2016-9813, CVE-2017-5843,
CVE-2017-5848).
The gstreamer0.10-plugins-bad package was affected by CVE-2016-9445,
CVE-2016-9446, CVE-2016-9447, CVE-2016-9809, CVE-2017-5843, and
CVE-2017-5848).
The gstreamer1.0-plugins-bad package was affected by CVE-2016-9445,
CVE-2016-9446, CVE-2016-9809, CVE-2016-9812, CVE-2016-9813, CVE-2017-5843,
and CVE-2017-5848.
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | emerald | 0 (affected), 0.8.14-1.mga6 (unaffected) | — |
| Mageia | gstreamer1.0-plugins-bad | 0 (affected), 1.4.3-2.1.mga5 (unaffected), 0 (affected), 1.4.3-2.1.mga5.tainted (unaffected), 0 (affected), 1.4.3-2.1.mga5 (unaffected), 0 (affected), 1.4.3-2.1.mga5.tainted (unaffected) | — |
| Mageia | gstreamer0.10-plugins-bad | 0 (affected), 0.10.23-22.2.mga5 (unaffected), 0 (affected), 0.10.23-22.2.mga5.tainted (unaffected), 0 (affected), 0.10.23-22.2.mga5 (unaffected), 0 (affected), 0.10.23-22.2.mga5.tainted (unaffected) | — |
Aliases
CVE-2016-9809CVE-2017-5848CVE-2016-9813CVE-2016-9447CVE-2016-9445CVE-2016-9446CVE-2017-5843CVE-2016-9812
Transitive aliases
EUVD-2017-14925GSD-2016-9813GHSA-xqgw-4rjf-hj4wCNVD-2017-01574SUSE-SU-2017:0027-1SUSE-SU-2017:0331-1CNVD-2017-00056VVD-GENTOO-2016-600142SUSE-SU-2017:0962-1GSD-2017-5843CNVD-2017-00122CNVD-2017-00121EUVD-2016-10255EUVD-2016-10256GHSA-p7qh-jxmh-67r6EUVD-2016-10257CNVD-2016-11659EUVD-2016-10613GHSA-x48g-rj33-j8m4GHSA-pvcc-25wc-frxrGHSA-vw8c-5cg5-c7cjGSD-2016-9809EUVD-2016-10610SUSE-SU-2017:0330-1GHSA-wccf-r8h3-9jc2EUVD-2016-10614GHSA-3xp5-mpvc-wqpwGHSA-653c-g2jf-pf9xVVD-MAGEIA-2018-13EUVD-2017-14920RHSA-2016:2974SUSE-SU-2017:0028-1GSD-2016-9447GSD-2016-9812
References
Updated gstreamer0.10-plugins-bad/gstreamer1.0-plugins-bad packages fix security vulnerability
advisory
Updated gstreamer0.10-plugins-bad/gstreamer1.0-plugins-bad packages fix security vulnerability
issue
Updated gstreamer0.10-plugins-bad/gstreamer1.0-plugins-bad packages fix security vulnerability
issue
Updated gstreamer0.10-plugins-bad/gstreamer1.0-plugins-bad packages fix security vulnerability
issue
Updated gstreamer0.10-plugins-bad/gstreamer1.0-plugins-bad packages fix security vulnerability
issue
Updated gstreamer0.10-plugins-bad/gstreamer1.0-plugins-bad packages fix security vulnerability
issue
Updated gstreamer0.10-plugins-bad/gstreamer1.0-plugins-bad packages fix security vulnerability
issue
Updated gstreamer0.10-plugins-bad/gstreamer1.0-plugins-bad packages fix security vulnerability
issue
Updated gstreamer0.10-plugins-bad/gstreamer1.0-plugins-bad packages fix security vulnerability
issue
Updated gstreamer0.10-plugins-bad/gstreamer1.0-plugins-bad packages fix security vulnerability
issue
Updated gstreamer0.10-plugins-bad/gstreamer1.0-plugins-bad packages fix security vulnerability
advisory
Updated gstreamer0.10-plugins-bad/gstreamer1.0-plugins-bad packages fix security vulnerability
advisory
Browse GCVE Records
100 records in the GCVE database · Updated April 16, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.