vulnerability

FreeBSD: VID-750ab972-b3e8-11ef-b680-4ccc6adda413 (CVE-2024-47597): gstreamer1-plugins-good -- multiple vulnerabilities

Severity
9
CVSS
(AV:N/AC:L/Au:N/C:C/I:N/A:C)
Published
Dec 6, 2024
Added
Dec 10, 2025
Modified
Dec 10, 2025

Description

The GStreamer Security Center reports: 20 security bugs. CVE-2024-47537: Integer overflow in MP4/MOV sample table parser leading to out-of-bounds writes CVE-2024-47598: MP4/MOV sample table parser out-of-bounds read CVE-2024-47539: MP4/MOV Closed Caption handling out-of-bounds write CVE-2024-47543: MP4/MOV demuxer out-of-bounds read CVE-2024-47545: Integer overflow in MP4/MOV demuxer that can result in out-of-bounds read CVE-2024-47544: NULL-pointer dereferences in MP4/MOV demuxer CENC handling CVE-2024-47597: Out-of-bounds reads in MP4/MOV demuxer sample table parser CVE-2024-47546: Integer underflow in MP4/MOV demuxer that can lead to out-of-bounds reads CVE-2024-47606: Integer overflows in MP4/MOV demuxer and memory allocator that can lead to out-of-bounds writes CVE-2024-47596: Integer underflow in MP4/MOV demuxer that can lead to out-of-bounds reads CVE-2024-47540: Usage of uninitialized stack memory in Matroska/WebM demuxer CVE-2024-47602: NULL-pointer dereferences and out-of-bounds reads in Matroska/WebM demuxer CVE-2024-47601: NULL-pointer dereference in Matroska/WebM demuxer CVE-2024-47603: NULL-pointer dereference in Matroska/WebM demuxer CVE-2024-47775: Out-of-bounds read in WAV parser CVE-2024-47776: Out-of-bounds read in WAV parser CVE-2024-47777: Out-of-bounds read in WAV parser CVE-2024-47778: Out-of-bounds read in WAV parser CVE-2024-47774: Integer overflow in AVI subtitle parser that leads to out-of-bounds reads CVE-2024-47834: Use-after-free in Matroska demuxer

Solution

freebsd-upgrade-package-gstreamer1-plugins-good
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.