SUSE-SU-2017:1004-1
Advisory lineage Upstream: 3 Downstream: 0
Published: 13 Apr 2017, 09:59
Last modified:04 Feb 2026, 03:37
Vulnerability Summary
Overall Risk (default)
minimal
0/100 CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected
Timeline
13 Apr 2017, 09:59
Published
Vulnerability first disclosed
04 Feb 2026, 03:37
Last Modified
Vulnerability information updated
Description
Security update for gstreamer-plugins-good This update for gstreamer-plugins-good fixes the following issues: - A crafted aac audio file could have caused an invalid read and thus corruption or denial of service (bsc#1024014, CVE-2016-10198) - A crafted mp4 file could have caused an invalid read and thus corruption or denial of service (bsc#1024017, CVE-2016-10199) - A crafted avi file could have caused an invalid read and thus corruption or denial of service (bsc#1024034, CVE-2017-5840)
Affected Systems
- suse•gstreamer-plugins-good&distro=SUSE Linux Enterprise Desktop 12 SP1
< 1.2.4-2.9.1
- suse•gstreamer-plugins-good&distro=SUSE Linux Enterprise Server 12 SP1
< 1.2.4-2.9.1
- suse•gstreamer-plugins-good&distro=SUSE Linux Enterprise Server for SAP Applications 12 SP1
< 1.2.4-2.9.1
References (7)
- https://www.suse.com/support/update/announcement/2017/suse-su-20171004-1/
- https://bugzilla.suse.com/1024014
- https://bugzilla.suse.com/1024017
- https://bugzilla.suse.com/1024034
- https://www.suse.com/security/cve/CVE-2016-10198
- https://www.suse.com/security/cve/CVE-2016-10199
- https://www.suse.com/security/cve/CVE-2017-5840