CVE-2024-44201
https://notcve.org/view.php?id=CVE-2024-44201
Processing a malicious crafted file may lead to a denial-of-service. • https://support.apple.com/en-us/121563 https://support.apple.com/en-us/121838 https://support.apple.com/en-us/121840 https://support.apple.com/en-us/121842 • CWE-404: Improper Resource Shutdown or Release •
CVE-2024-54501
https://notcve.org/view.php?id=CVE-2024-54501
Processing a maliciously crafted file may lead to a denial of service. • https://support.apple.com/en-us/121837 https://support.apple.com/en-us/121838 https://support.apple.com/en-us/121839 https://support.apple.com/en-us/121840 https://support.apple.com/en-us/121842 https://support.apple.com/en-us/121843 https://support.apple.com/en-us/121844 https://support.apple.com/en-us/121845 • CWE-770: Allocation of Resources Without Limits or Throttling •
CVE-2024-47776 – GHSL-2024-260: GStreamer has a OOB-read in gst_wavparse_cue_chunk
https://notcve.org/view.php?id=CVE-2024-47776
This vulnerability allows reading beyond the bounds of the data buffer, potentially leading to a crash (denial of service) or the leak of sensitive data. • https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/8042.patch https://gstreamer.freedesktop.org/security/sa-2024-0027.html https://securitylab.github.com/advisories/GHSL-2024-260_Gstreamer • CWE-125: Out-of-bounds Read •
CVE-2024-47775 – GHSL-2024-261: GStreamer has an OOB-read in parse_ds64
https://notcve.org/view.php?id=CVE-2024-47775
This vulnerability allows reading beyond the bounds of the data buffer, potentially leading to a crash (denial of service) or the leak of sensitive data. • https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/8042.patch https://gstreamer.freedesktop.org/security/sa-2024-0027.html https://securitylab.github.com/advisories/GHSL-2024-261_Gstreamer • CWE-125: Out-of-bounds Read •
CVE-2024-47613 – GHSL-2024-118: GStreamer has a null pointer dereference in gst_gdk_pixbuf_dec_flush
https://notcve.org/view.php?id=CVE-2024-47613
This vulnerability can result in a Denial of Service (DoS) by triggering a segmentation fault (SEGV). ... Processing a specially crafted input file can cause a NULL pointer dereference due to an unchecked return value, resulting in an application crash and a denial of service. • https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/8041.patch https://gstreamer.freedesktop.org/security/sa-2024-0025.html https://securitylab.github.com/advisories/GHSL-2024-115_GHSL-2024-118_Gstreamer https://access.redhat.com/security/cve/CVE-2024-47613 https://bugzilla.redhat.com/show_bug.cgi?id=2331753 • CWE-476: NULL Pointer Dereference •