ELSA-2023-7791

ELSA-2023-7791 - gstreamer1-plugins-bad-free security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2023-12-15

Description


[1.22.1-2]
- Patch CVE-2023-44429: AV1 codec parser heap-based buffer overflow
- Patch CVE-2023-44446: MXF demuxer use-after-free
- Resolves: RHEL-17030, RHEL-17039


Related CVEs


CVE-2023-44446
CVE-2023-44429

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) gstreamer1-plugins-bad-free-1.22.1-2.el9_3.src.rpm8c63cfa12a9b6e19c45e4601f7df6ebca42aaf81c3db0fd359ffd4792d84bf2c-ol9_aarch64_appstream
gstreamer1-plugins-bad-free-1.22.1-2.el9_3.src.rpm8c63cfa12a9b6e19c45e4601f7df6ebca42aaf81c3db0fd359ffd4792d84bf2c-ol9_aarch64_codeready_builder
gstreamer1-plugins-bad-free-1.22.1-2.el9_3.aarch64.rpmdfb7e9a505c2d41d9f5a067f5e6f8469855541e63dc5db3b17402e3e0a4c67e1-ol9_aarch64_appstream
gstreamer1-plugins-bad-free-devel-1.22.1-2.el9_3.aarch64.rpm5e93fbd0c0e019fe781efd4c937eb6f8d8d186104d0fa2e5232da387118f9c89-ol9_aarch64_codeready_builder
Oracle Linux 9 (x86_64) gstreamer1-plugins-bad-free-1.22.1-2.el9_3.src.rpm8c63cfa12a9b6e19c45e4601f7df6ebca42aaf81c3db0fd359ffd4792d84bf2c-ol9_x86_64_appstream
gstreamer1-plugins-bad-free-1.22.1-2.el9_3.src.rpm8c63cfa12a9b6e19c45e4601f7df6ebca42aaf81c3db0fd359ffd4792d84bf2c-ol9_x86_64_codeready_builder
gstreamer1-plugins-bad-free-1.22.1-2.el9_3.i686.rpm1cda53fe8303b75926b3e95dcfccd8b5d934c610de35b595ba4f48dc8f0a1dce-ol9_x86_64_appstream
gstreamer1-plugins-bad-free-1.22.1-2.el9_3.x86_64.rpm56055d21ae9baadb1aa375b15555a73b7e130f03a5dde05ea110c9b625cf0731-ol9_x86_64_appstream
gstreamer1-plugins-bad-free-devel-1.22.1-2.el9_3.i686.rpm0e952ed41ad9795bcb897601a0680671da7cc63e3dfa282179ddf6399c7c9db4-ol9_x86_64_codeready_builder
gstreamer1-plugins-bad-free-devel-1.22.1-2.el9_3.x86_64.rpmb5b5b6f910f693084d54f101cafa5bb72406e4ee1f7f019edc952fe6ffa08d27-ol9_x86_64_codeready_builder



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete