* CVE-2021-3497 (gst-plugins-good) Description: "GStreamer before 1.18.4 might access already-freed memory in error code paths when demuxing certain malformed Matroska files." Advisory: https://gstreamer.freedesktop.org/security/sa-2021-0002.html
* CVE-2021-3498 (gst-plugins-good) Description: "GStreamer before 1.18.4 might cause heap corruption when parsing certain malformed Matroska files." Advisory: https://gstreamer.freedesktop.org/security/sa-2021-0002.html ---- The advisories for both mention being able to apply patches to previous release series.
* CVE-2021-3497 Description: "GStreamer before 1.18.4 might access already-freed memory in error code paths when demuxing certain malformed Matroska files." Advisory: https://gstreamer.freedesktop.org/security/sa-2021-0002.html * CVE-2021-3498 Description: "GStreamer before 1.18.4 might cause heap corruption when parsing certain malformed Matroska files." Advisory: https://gstreamer.freedesktop.org/security/sa-2021-0003.html
Package list is empty or all packages have requested keywords.
GLSA request filed
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/data/glsa.git/commit/?id=f69203b9608d0db5bda6ce4050bf90de5119c0f8 commit f69203b9608d0db5bda6ce4050bf90de5119c0f8 Author: GLSAMaker <glsamaker@gentoo.org> AuthorDate: 2022-08-14 21:47:49 +0000 Commit: Sam James <sam@gentoo.org> CommitDate: 2022-08-14 21:48:21 +0000 [ GLSA 202208-31 ] GStreamer, GStreamer Plugins: Multiple Vulnerabilities Bug: https://bugs.gentoo.org/765163 Bug: https://bugs.gentoo.org/766336 Bug: https://bugs.gentoo.org/785652 Bug: https://bugs.gentoo.org/785655 Bug: https://bugs.gentoo.org/785658 Bug: https://bugs.gentoo.org/785661 Bug: https://bugs.gentoo.org/835368 Bug: https://bugs.gentoo.org/843770 Signed-off-by: GLSAMaker <glsamaker@gentoo.org> Signed-off-by: Sam James <sam@gentoo.org> glsa-202208-31.xml | 111 +++++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 111 insertions(+)
GLSA done, all done.