- -------------------------------------------------------------------------
Debian Security Advisory DSA-5838-1                   security@debian.org
https://www.debian.org/security/                     Salvatore Bonaccorso
December 29, 2024                     https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package        : gst-plugins-good1.0
CVE ID         : CVE-2024-47537 CVE-2024-47539 CVE-2024-47540 CVE-2024-47543
                 CVE-2024-47544 CVE-2024-47545 CVE-2024-47546 CVE-2024-47596
                 CVE-2024-47597 CVE-2024-47598 CVE-2024-47599 CVE-2024-47601
                 CVE-2024-47602 CVE-2024-47603 CVE-2024-47606 CVE-2024-47613
                 CVE-2024-47774 CVE-2024-47775 CVE-2024-47776 CVE-2024-47777
                 CVE-2024-47778 CVE-2024-47834

Multiple vulnerabilities were discovered in plugins for the GStreamer
media framework and its codecs and demuxers, which may result in denial
of service or potentially the execution of arbitrary code if a malformed
media file is opened.

For the stable distribution (bookworm), these problems have been fixed in
version 1.22.0-5+deb12u2.

We recommend that you upgrade your gst-plugins-good1.0 packages.

For the detailed security status of gst-plugins-good1.0 please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/gst-plugins-good1.0

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce@lists.debian.org

Debian: DSA-5838-1: gst-plugins-good1.0 Security Advisory Updates

December 29, 2024
Multiple vulnerabilities were discovered in plugins for the GStreamer media framework and its codecs and demuxers, which may result in denial of service or potentially the executio...

Summary

For the stable distribution (bookworm), these problems have been fixed in
version 1.22.0-5+deb12u2.

We recommend that you upgrade your gst-plugins-good1.0 packages.

For the detailed security status of gst-plugins-good1.0 please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/gst-plugins-good1.0

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
Package : gst-plugins-good1.0
CVE ID : CVE-2024-47537 CVE-2024-47539 CVE-2024-47540 CVE-2024-47543

Related News