vulnerability
Huawei EulerOS: CVE-2016-9446: gstreamer security update
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 5 | (AV:N/AC:L/Au:N/C:P/I:N/A:N) | Jan 23, 2017 | Nov 30, 2017 | Apr 1, 2026 |
Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
Jan 23, 2017
Added
Nov 30, 2017
Modified
Apr 1, 2026
Description
The vmnc decoder in the gstreamer does not initialize the render canvas, which allows remote attackers to obtain sensitive information as demonstrated by thumbnailing a simple 1 frame vmnc movie that does not draw to the allocated render canvas.
Solutions
huawei-euleros-2_0_sp2-upgrade-gstreamer1huawei-euleros-2_0_sp2-upgrade-gstreamer1-develhuawei-euleros-2_0_sp2-upgrade-gstreamer1-plugins-bad-freehuawei-euleros-2_0_sp2-upgrade-gstreamer1-plugins-basehuawei-euleros-2_0_sp2-upgrade-gstreamer1-plugins-base-develhuawei-euleros-2_0_sp2-upgrade-gstreamer1-plugins-good
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.