vulnerability
Oracle Solaris 11: CVE-2016-9446: Vulnerability in GStreamer
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 5 | (AV:N/AC:L/Au:N/C:P/I:N/A:N) | Jan 23, 2017 | Oct 31, 2018 | Feb 1, 2022 |
Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
Jan 23, 2017
Added
Oct 31, 2018
Modified
Feb 1, 2022
Description
The vmnc decoder in the gstreamer does not initialize the render canvas, which allows remote attackers to obtain sensitive information as demonstrated by thumbnailing a simple 1 frame vmnc movie that does not draw to the allocated render canvas.
Solution
oracle-solaris-11-3-upgrade-library-audio-gstreamer-0-10-32-0-175-3-0-0-26-0
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.