Lucene search

K
osvGoogleOSV:CVE-2017-5845
HistoryFeb 09, 2017 - 3:59 p.m.

CVE-2017-5845

2017-02-0915:59:01
Google
osv.dev
14

AI Score

6.6

Confidence

High

EPSS

0.015

Percentile

87.0%

The gst_avi_demux_parse_ncdt function in gst/avi/gstavidemux.c in gst-plugins-good in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (invalid memory read and crash) via a ncdt sub-tag that “goes behind” the surrounding tag.