Risk | High |
Patch available | YES |
Number of vulnerabilities | 9 |
CVE-ID | CVE-2021-3497 CVE-2022-1920 CVE-2022-1921 CVE-2022-1922 CVE-2022-1923 CVE-2022-1924 CVE-2022-1925 CVE-2022-2122 CVE-2023-37327 |
CWE-ID | CWE-416 CWE-190 CWE-122 |
Exploitation vector | Network |
Public exploit | N/A |
Vulnerable software |
SUSE Linux Enterprise Server for SAP Applications 15 Operating systems & Components / Operating system SUSE Linux Enterprise Server 15 SP1 LTSS Operating systems & Components / Operating system SUSE Linux Enterprise Server 15 Operating systems & Components / Operating system gstreamer-plugins-good-lang Operating systems & Components / Operating system package or component gstreamer-plugins-good-debugsource Operating systems & Components / Operating system package or component gstreamer-plugins-good-debuginfo Operating systems & Components / Operating system package or component gstreamer-plugins-good Operating systems & Components / Operating system package or component |
Vendor | SUSE |
Security Bulletin
This security bulletin contains information about 9 vulnerabilities.
EUVDB-ID: #VU69294
Risk: High
CVSSv4.0: 5.7 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Amber]
CVE-ID: CVE-2021-3497
CWE-ID:
CWE-416 - Use After Free
Exploit availability: No
DescriptionThe vulnerability allows a remote attacker to compromise vulnerable system.
The vulnerability exists due to a use-after-free error when demuxing certain malformed Matroska files. A remote attacker can trick the victim into opening a specially crafted file, trigger a use-after-free error and execute arbitrary code on the system.
Successful exploitation of the vulnerability may allow an attacker to compromise vulnerable system.
MitigationUpdate the affected package gstreamer-plugins-good to the latest version.
Vulnerable software versionsSUSE Linux Enterprise Server for SAP Applications 15: SP1
SUSE Linux Enterprise Server 15 SP1 LTSS: 15-SP1
SUSE Linux Enterprise Server 15: SP1
gstreamer-plugins-good-lang: before 1.12.5-150000.3.7.2
gstreamer-plugins-good-debugsource: before 1.12.5-150000.3.7.2
gstreamer-plugins-good-debuginfo: before 1.12.5-150000.3.7.2
gstreamer-plugins-good: before 1.12.5-150000.3.7.2
CPE2.3https://www.suse.com/support/update/announcement/2023/suse-su-20233688-1/
Q & A
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.
EUVDB-ID: #VU66194
Risk: High
CVSSv4.0: 5.7 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Amber]
CVE-ID: CVE-2022-1920
CWE-ID:
CWE-190 - Integer overflow
Exploit availability: No
DescriptionThe vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to integer overflow within the matroskademux element in gst_matroska_demux_add_wvpk_header() function when parsing matroska files. A remote attacker can pass specially crafted file to the application, trigger an integer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
MitigationUpdate the affected package gstreamer-plugins-good to the latest version.
Vulnerable software versionsSUSE Linux Enterprise Server for SAP Applications 15: SP1
SUSE Linux Enterprise Server 15 SP1 LTSS: 15-SP1
SUSE Linux Enterprise Server 15: SP1
gstreamer-plugins-good-lang: before 1.12.5-150000.3.7.2
gstreamer-plugins-good-debugsource: before 1.12.5-150000.3.7.2
gstreamer-plugins-good-debuginfo: before 1.12.5-150000.3.7.2
gstreamer-plugins-good: before 1.12.5-150000.3.7.2
CPE2.3https://www.suse.com/support/update/announcement/2023/suse-su-20233688-1/
Q & A
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.
EUVDB-ID: #VU66195
Risk: High
CVSSv4.0: 5.7 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Amber]
CVE-ID: CVE-2022-1921
CWE-ID:
CWE-190 - Integer overflow
Exploit availability: No
DescriptionThe vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to integer overflow within the in avidemux element in the gst_avi_demux_invert() function when parsing .avi files. A remote attacker can pass specially crafted file to the application, trigger integer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
MitigationUpdate the affected package gstreamer-plugins-good to the latest version.
Vulnerable software versionsSUSE Linux Enterprise Server for SAP Applications 15: SP1
SUSE Linux Enterprise Server 15 SP1 LTSS: 15-SP1
SUSE Linux Enterprise Server 15: SP1
gstreamer-plugins-good-lang: before 1.12.5-150000.3.7.2
gstreamer-plugins-good-debugsource: before 1.12.5-150000.3.7.2
gstreamer-plugins-good-debuginfo: before 1.12.5-150000.3.7.2
gstreamer-plugins-good: before 1.12.5-150000.3.7.2
CPE2.3https://www.suse.com/support/update/announcement/2023/suse-su-20233688-1/
Q & A
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.
EUVDB-ID: #VU66196
Risk: High
CVSSv4.0: 5.7 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Amber]
CVE-ID: CVE-2022-1922
CWE-ID:
CWE-190 - Integer overflow
Exploit availability: No
DescriptionThe vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to integer overflow within the matroskademux element in gst_matroska_decompress_data() function. A remote attacker can pass specially crafted mkv file to the application, trigger integer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
MitigationUpdate the affected package gstreamer-plugins-good to the latest version.
Vulnerable software versionsSUSE Linux Enterprise Server for SAP Applications 15: SP1
SUSE Linux Enterprise Server 15 SP1 LTSS: 15-SP1
SUSE Linux Enterprise Server 15: SP1
gstreamer-plugins-good-lang: before 1.12.5-150000.3.7.2
gstreamer-plugins-good-debugsource: before 1.12.5-150000.3.7.2
gstreamer-plugins-good-debuginfo: before 1.12.5-150000.3.7.2
gstreamer-plugins-good: before 1.12.5-150000.3.7.2
CPE2.3https://www.suse.com/support/update/announcement/2023/suse-su-20233688-1/
Q & A
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.
EUVDB-ID: #VU66197
Risk: High
CVSSv4.0: 5.7 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Amber]
CVE-ID: CVE-2022-1923
CWE-ID:
CWE-190 - Integer overflow
Exploit availability: No
DescriptionThe vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to integer overflow within the matroskademux element in bzip decompression function. A remote attacker can pass specially crafted file to the application, trigger integer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
MitigationUpdate the affected package gstreamer-plugins-good to the latest version.
Vulnerable software versionsSUSE Linux Enterprise Server for SAP Applications 15: SP1
SUSE Linux Enterprise Server 15 SP1 LTSS: 15-SP1
SUSE Linux Enterprise Server 15: SP1
gstreamer-plugins-good-lang: before 1.12.5-150000.3.7.2
gstreamer-plugins-good-debugsource: before 1.12.5-150000.3.7.2
gstreamer-plugins-good-debuginfo: before 1.12.5-150000.3.7.2
gstreamer-plugins-good: before 1.12.5-150000.3.7.2
CPE2.3https://www.suse.com/support/update/announcement/2023/suse-su-20233688-1/
Q & A
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.
EUVDB-ID: #VU66198
Risk: High
CVSSv4.0: 5.7 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Amber]
CVE-ID: CVE-2022-1924
CWE-ID:
CWE-190 - Integer overflow
Exploit availability: No
DescriptionThe vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to integer overflow within the matroskademux element in lzo decompression function. A remote attacker can pass specially crafted file to the application, trigger integer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
MitigationUpdate the affected package gstreamer-plugins-good to the latest version.
Vulnerable software versionsSUSE Linux Enterprise Server for SAP Applications 15: SP1
SUSE Linux Enterprise Server 15 SP1 LTSS: 15-SP1
SUSE Linux Enterprise Server 15: SP1
gstreamer-plugins-good-lang: before 1.12.5-150000.3.7.2
gstreamer-plugins-good-debugsource: before 1.12.5-150000.3.7.2
gstreamer-plugins-good-debuginfo: before 1.12.5-150000.3.7.2
gstreamer-plugins-good: before 1.12.5-150000.3.7.2
CPE2.3https://www.suse.com/support/update/announcement/2023/suse-su-20233688-1/
Q & A
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.
EUVDB-ID: #VU66199
Risk: High
CVSSv4.0: 5.7 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Amber]
CVE-ID: CVE-2022-1925
CWE-ID:
CWE-190 - Integer overflow
Exploit availability: No
DescriptionThe vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to integer overflow within the matroskaparse element in gst_matroska_decompress_data() function. A remote attacker can pass specially crafted file to the application, trigger integer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
MitigationUpdate the affected package gstreamer-plugins-good to the latest version.
Vulnerable software versionsSUSE Linux Enterprise Server for SAP Applications 15: SP1
SUSE Linux Enterprise Server 15 SP1 LTSS: 15-SP1
SUSE Linux Enterprise Server 15: SP1
gstreamer-plugins-good-lang: before 1.12.5-150000.3.7.2
gstreamer-plugins-good-debugsource: before 1.12.5-150000.3.7.2
gstreamer-plugins-good-debuginfo: before 1.12.5-150000.3.7.2
gstreamer-plugins-good: before 1.12.5-150000.3.7.2
CPE2.3https://www.suse.com/support/update/announcement/2023/suse-su-20233688-1/
Q & A
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.
EUVDB-ID: #VU66200
Risk: High
CVSSv4.0: 5.7 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Amber]
CVE-ID: CVE-2022-2122
CWE-ID:
CWE-190 - Integer overflow
Exploit availability: No
DescriptionThe vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to integer overflow within the qtdemux element in qtdemux_inflate() function. A remote attacker can pass specially crafted file to the application, trigger integer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
MitigationUpdate the affected package gstreamer-plugins-good to the latest version.
Vulnerable software versionsSUSE Linux Enterprise Server for SAP Applications 15: SP1
SUSE Linux Enterprise Server 15 SP1 LTSS: 15-SP1
SUSE Linux Enterprise Server 15: SP1
gstreamer-plugins-good-lang: before 1.12.5-150000.3.7.2
gstreamer-plugins-good-debugsource: before 1.12.5-150000.3.7.2
gstreamer-plugins-good-debuginfo: before 1.12.5-150000.3.7.2
gstreamer-plugins-good: before 1.12.5-150000.3.7.2
CPE2.3https://www.suse.com/support/update/announcement/2023/suse-su-20233688-1/
Q & A
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.
EUVDB-ID: #VU77964
Risk: High
CVSSv4.0: 8.1 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Amber]
CVE-ID: CVE-2023-37327
CWE-ID:
CWE-122 - Heap-based Buffer Overflow
Exploit availability: No
DescriptionThe vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to a boundary error in the FLAC parser when handling malformed image tags. A remote attacker can pass specially crafted data to the application, trigger a heap-based buffer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
MitigationUpdate the affected package gstreamer-plugins-good to the latest version.
Vulnerable software versionsSUSE Linux Enterprise Server for SAP Applications 15: SP1
SUSE Linux Enterprise Server 15 SP1 LTSS: 15-SP1
SUSE Linux Enterprise Server 15: SP1
gstreamer-plugins-good-lang: before 1.12.5-150000.3.7.2
gstreamer-plugins-good-debugsource: before 1.12.5-150000.3.7.2
gstreamer-plugins-good-debuginfo: before 1.12.5-150000.3.7.2
gstreamer-plugins-good: before 1.12.5-150000.3.7.2
CPE2.3https://www.suse.com/support/update/announcement/2023/suse-su-20233688-1/
Q & A
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.