Search CVE reports


Toggle filters

11 – 20 of 21693 results

Status is adjusted based on your filters.


CVE-2024-47834

Medium priority
Needs evaluation

GStreamer is a library for constructing graphs of media-handling components. An Use-After-Free read vulnerability has been discovered affecting the processing of CodecPrivate elements in Matroska streams. In the...

2 affected packages

gst-plugins-good0.10, gst-plugins-good1.0

Package 24.04 LTS
gst-plugins-good0.10 Not in release
gst-plugins-good1.0 Needs evaluation
Show less packages

CVE-2024-47778

Medium priority
Needs evaluation

GStreamer is a library for constructing graphs of media-handling components. An OOB-read vulnerability has been discovered in gst_wavparse_adtl_chunk within gstwavparse.c. This vulnerability arises due to insufficient validation...

2 affected packages

gst-plugins-good0.10, gst-plugins-good1.0

Package 24.04 LTS
gst-plugins-good0.10 Not in release
gst-plugins-good1.0 Needs evaluation
Show less packages

CVE-2024-47777

Medium priority
Needs evaluation

GStreamer is a library for constructing graphs of media-handling components. An OOB-read vulnerability has been identified in the gst_wavparse_smpl_chunk function within gstwavparse.c. This function attempts to read 4 bytes from...

2 affected packages

gst-plugins-good0.10, gst-plugins-good1.0

Package 24.04 LTS
gst-plugins-good0.10 Not in release
gst-plugins-good1.0 Needs evaluation
Show less packages

CVE-2024-47776

Medium priority
Needs evaluation

GStreamer is a library for constructing graphs of media-handling components. An OOB-read has been discovered in gst_wavparse_cue_chunk within gstwavparse.c. The vulnerability happens due to a discrepancy between the size of the...

2 affected packages

gst-plugins-good0.10, gst-plugins-good1.0

Package 24.04 LTS
gst-plugins-good0.10 Not in release
gst-plugins-good1.0 Needs evaluation
Show less packages

CVE-2024-47775

Medium priority
Needs evaluation

GStreamer is a library for constructing graphs of media-handling components. An OOB-read vulnerability has been found in the parse_ds64 function within gstwavparse.c. The parse_ds64 function does not check that the buffer buf...

2 affected packages

gst-plugins-good0.10, gst-plugins-good1.0

Package 24.04 LTS
gst-plugins-good0.10 Not in release
gst-plugins-good1.0 Needs evaluation
Show less packages

CVE-2024-47774

Medium priority
Needs evaluation

GStreamer is a library for constructing graphs of media-handling components. An OOB-read vulnerability has been identified in the gst_avi_subtitle_parse_gab2_chunk function within gstavisubtitle.c. The function reads the...

2 affected packages

gst-plugins-good0.10, gst-plugins-good1.0

Package 24.04 LTS
gst-plugins-good0.10 Not in release
gst-plugins-good1.0 Needs evaluation
Show less packages

CVE-2024-47761

Medium priority

Not in release

GLPI is a free asset and IT management software package. Starting in version 0.80 and prior to version 10.0.17, an administrator with access to the sent notifications contents can take control of an account with higher privileges....

1 affected package

glpi

Package 24.04 LTS
glpi Not in release
Show less packages

CVE-2024-47760

Medium priority

Not in release

GLPI is a free asset and IT management software package. Starting in version 9.1.0 and prior to version 10.0.17, a technician with an access to the API can take control of an account with higher privileges. Version 10.0.17...

1 affected package

glpi

Package 24.04 LTS
glpi Not in release
Show less packages

CVE-2024-47758

Medium priority

Not in release

GLPI is a free asset and IT management software package. Starting in version 9.3.0 and prior to version 10.0.17, an authenticated user can use the API to take control of any user that have the same or a lower level of privileges....

1 affected package

glpi

Package 24.04 LTS
glpi Not in release
Show less packages

CVE-2024-47615

Medium priority
Needs evaluation

GStreamer is a library for constructing graphs of media-handling components. An OOB-Write has been detected in the function gst_parse_vorbis_setup_packet within vorbis_parse.c. The integer size is read from the input file without...

2 affected packages

gst-plugins-base0.10, gst-plugins-base1.0

Package 24.04 LTS
gst-plugins-base0.10 Not in release
gst-plugins-base1.0 Needs evaluation
Show less packages