ELA-1105-1 gst-plugins-base0.10 security update

integer overflow

2024-06-06
Packagegst-plugins-base0.10
Version0.10.36-2+deb8u4 (jessie)
Related CVEs CVE-2024-4453


An integer overflow in the EXIF metadata parsing was discovered in the GStreamer media framework, which may result in denial of service or potentially the execution of arbitrary code if a malformed file is processed.



For Debian 8 jessie, these problems have been fixed in version 0.10.36-2+deb8u4.

We recommend that you upgrade your gst-plugins-base0.10 packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.