Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:17679
HistoryMay 02, 2019 - 5:51 a.m.

Denial Of Service (DoS) And Remote Code Execution (RCE)

2019-05-0205:51:36
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
17

EPSS

0.003

Percentile

65.5%

GStreamer is vulnerable to denial of service (DoS) and remote code execution (RCE) attacks. GStreamer’s FLC/FLI/FLX media file format decoding plug-in is the flawed component. A remote attacker could crash or, potentially, execute arbitrary code with the privileges of the user running the application by providing a ‘skip count’ that goes beyond initialized buffer.