#VU101214 Out-of-bounds read in gst-plugins-good and gstreamer - CVE-2024-47776
Published: December 4, 2024
gst-plugins-good
gstreamer
GStreamer
Description
The vulnerability allows a remote attacker to gain access to potentially sensitive information or crash the application.
The vulnerability exists due to a boundary condition within the the WAV parser. A remote attacker can pass specially crafted file to the application, trigger an out-of-bounds read error and read contents of memory on the system or perform a denial of service (DoS) attack.