Red Hat Security Advisory: gstreamer1-plugins-good security update
🔗 CVE IDs covered (17)
📋 Description
CVE-2024-47543 — gstreamer1-plugins-good: OOB-read in qtdemux_parse_container CVE-2024-47544 — gstreamer1-plugins-good: NULL-pointer dereferences in MP4/MOV demuxer CENC handling CVE-2024-47545 — gstreamer1-plugins-good: integer underflow in FOURCC_strf parsing leading to OOB-read CVE-2024-47546 — gstreamer1-plugins-good: integer underflow in extract_cc_from_data leading to OOB-read CVE-2024-47596 — gstreamer1-plugins-good: OOB-read in FOURCC_SMI_ parsing CVE-2024-47597 — gstreamer1-plugins-good: OOB-read in qtdemux_parse_samples CVE-2024-47598 — gstreamer1-plugins-good: OOB-read in qtdemux_merge_sample_table CVE-2024-47599 — gstreamer1-plugins-good: insufficient error handling in JPEG decoder that can lead to NULL-pointer dereferences CVE-2024-47601 — gstreamer1-plugins-good: NULL-pointer dereference in Matroska/WebM demuxer CVE-2024-47602 — gstreamer1-plugins-good: NULL-pointer dereferences and out-of-bounds reads in Matroska/WebM demuxer CVE-2024-47603 — gstreamer1-plugins-good: NULL-pointer dereference in Matroska/WebM demuxer CVE-2024-47774 — gstreamer1-plugins-good: GStreamer has an OOB-read in gst_avi_subtitle_parse_gab2_chunk CVE-2024-47775 — gstreamer1-plugins-good: OOB-read in parse_ds64 CVE-2024-47776 — gstreamer1-plugins-good: OOB-read in gst_wavparse_cue_chunk CVE-2024-47777 — gstreamer1-plugins-good: OOB-read in gst_wavparse_smpl_chunk CVE-2024-47778 — gstreamer1-plugins-good: OOB-read in gst_wavparse_adtl_chunk CVE-2024-47834 — gstreamer1-plugins-good: Use-After-Free read in Matroska CodecPrivate
🔗 References (21)
- selfhttps://access.redhat.com/errata/RHSA-2025:7242
- externalhttps://docs.redhat.com/en/documentation/red_hat_enterprise_linux/9/html/9.6_release_notes/index
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2331723
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2331739
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2331741
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2331743
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2331744
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2331747
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2331748
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2331749
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2331750
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2331751
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2331752
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2331755
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2331756
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2331759
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2331761
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2331762
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2331763
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_7242.json