CVE Database
/

CVE-2017-5839

Back to search

CVE-2017-5839

Published: Feb 9, 2017

Modified: Aug 5, 2024

PUBLISHED

Description

The gst_riff_create_audio_caps function in gst-libs/gst/riff/riff-media.c in gst-plugins-base in GStreamer before 1.10.3 does not properly limit recursion, which allows remote attackers to cause a denial of service (stack overflow and crash) via vectors involving nested WAVEFORMATEX.

VendorProductVersions

n/a

n/a

affected
n/a

References

96001
vdb-entry
x_refsource_BID
DSA-3819
vendor-advisory
x_refsource_DEBIAN
RHSA-2017:2060
vendor-advisory
x_refsource_REDHAT
GLSA-201705-10
vendor-advisory
x_refsource_GENTOO

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now