[Git][security-tracker-team/security-tracker][master] Add GHSL references for Gstreamer CVEs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Dec 17 21:45:42 GMT 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
6d15f6ce by Salvatore Bonaccorso at 2024-12-17T22:44:53+01:00
Add GHSL references for Gstreamer CVEs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1750,6 +1750,7 @@ CVE-2024-47835 (GStreamer is a library for constructing graphs of media-handling
 	{DSA-5831-1}
 	- gst-plugins-base1.0 1.24.10-1
 	- gst-plugins-base0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-263_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0029.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3892
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/commit/4c40f73b7002967e824ef34a5435282f4a0ea363
@@ -1757,6 +1758,7 @@ CVE-2024-47835 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47834 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-280_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0030.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3863
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/8057
@@ -1764,6 +1766,7 @@ CVE-2024-47834 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47778 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-258_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0027.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3886
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3888
@@ -1772,6 +1775,7 @@ CVE-2024-47778 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47777 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-259_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0027.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3886
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3888
@@ -1780,6 +1784,7 @@ CVE-2024-47777 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47776 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-260_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0027.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3886
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3888
@@ -1788,6 +1793,7 @@ CVE-2024-47776 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47775 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-261_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0027.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3886
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3888
@@ -1796,6 +1802,7 @@ CVE-2024-47775 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47774 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-262_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0028.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3890
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/commit/0870e87c7c02e28e22a09a7de0c5b1e5bed68c14
@@ -1813,6 +1820,7 @@ CVE-2024-47615 (GStreamer is a library for constructing graphs of media-handling
 	{DSA-5831-1}
 	- gst-plugins-base1.0 1.24.10-1
 	- gst-plugins-base0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-115_GHSL-2024-118_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0026.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3875
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/8038 (main)
@@ -1821,6 +1829,7 @@ CVE-2024-47615 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47613 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-115_GHSL-2024-118_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0025.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3876
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/commit/1d1c9d63be51d85f9b80f0c227d4b3469fee2534
@@ -1829,6 +1838,7 @@ CVE-2024-47607 (GStreamer is a library for constructing graphs of media-handling
 	{DSA-5831-1}
 	- gst-plugins-base1.0 1.24.10-1
 	- gst-plugins-base0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-115_GHSL-2024-118_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0024.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3871
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/commit/2838374d6ee4a0c9c4c4221ac46d5c1688f26e59
@@ -1839,6 +1849,7 @@ CVE-2024-47606 (GStreamer is a library for constructing graphs of media-handling
 	- gstreamer0.10 <not-affected> (Vulnerable code introduced in 1.0)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-166_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0014.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3851
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/commit/f1cdc6f24340f6cce4cc7020628002f5c70dd6c7
@@ -1848,6 +1859,7 @@ CVE-2024-47606 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47603 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-251_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0021.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3863
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/8057
@@ -1855,6 +1867,7 @@ CVE-2024-47603 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47602 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-250_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0019.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3863
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/8057
@@ -1862,6 +1875,7 @@ CVE-2024-47602 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47601 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-249_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0020.html
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3863
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/8057
@@ -1870,6 +1884,7 @@ CVE-2024-47600 (GStreamer is a library for constructing graphs of media-handling
 	{DSA-5831-1}
 	- gst-plugins-base1.0 1.24.10-1
 	- gst-plugins-base0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-248_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0018.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3864
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/commit/aa07d94c10d71fac389dbbb264a59c1f6117eead
@@ -1877,6 +1892,7 @@ CVE-2024-47600 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47599 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-247_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0016.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3862
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/commit/3cdf206f4fc5a9860bfe1437ed3d01e7d23c6c3e
@@ -1884,6 +1900,7 @@ CVE-2024-47599 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47598 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-246_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0006.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3839
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/8059
@@ -1891,6 +1908,7 @@ CVE-2024-47598 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47597 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-245_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0012.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3839
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/8059
@@ -1898,6 +1916,7 @@ CVE-2024-47597 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47596 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-244_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0015.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3839
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/8059
@@ -1905,6 +1924,7 @@ CVE-2024-47596 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47546 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-243_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0013.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3839
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/8059
@@ -1912,6 +1932,7 @@ CVE-2024-47546 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47545 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-242_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0010.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3839
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/8059
@@ -1919,6 +1940,7 @@ CVE-2024-47545 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47544 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-238_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0011.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3839
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/8059
@@ -1926,6 +1948,7 @@ CVE-2024-47544 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47543 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-236_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0009.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3839
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/8059
@@ -1933,6 +1956,7 @@ CVE-2024-47543 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47542 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-235_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0008.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3842
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/commit/537161868f36048571f400648ac7909f26c73d53
@@ -1941,6 +1965,7 @@ CVE-2024-47541 (GStreamer is a library for constructing graphs of media-handling
 	{DSA-5831-1}
 	- gst-plugins-base1.0 1.24.10-1
 	- gst-plugins-base0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-228_GStreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0023.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3870
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/commit/403b10eba06679319aa2e35d310236234782102f
@@ -1950,6 +1975,7 @@ CVE-2024-47541 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47540 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-197_GStreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0017.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3863
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/commit/c0dceda8e969f74f2326539c1f0368c2fd7afcd7
@@ -1957,6 +1983,7 @@ CVE-2024-47540 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47539 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-195_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0007.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3839
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/8059
@@ -1965,6 +1992,7 @@ CVE-2024-47538 (GStreamer is a library for constructing graphs of media-handling
 	{DSA-5831-1}
 	- gst-plugins-base1.0 1.24.10-1
 	- gst-plugins-base0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-115_GHSL-2024-118_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0022.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3869
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/commit/5093691ef2ef5c7a6e03a20bce39db143b9cdc43
@@ -1972,6 +2000,7 @@ CVE-2024-47538 (GStreamer is a library for constructing graphs of media-handling
 CVE-2024-47537 (GStreamer is a library for constructing graphs of media-handling compo ...)
 	- gst-plugins-good1.0 1.24.10-1
 	- gst-plugins-good0.10 <removed>
+	NOTE: https://securitylab.github.com/advisories/GHSL-2024-094_Gstreamer/
 	NOTE: https://gstreamer.freedesktop.org/security/sa-2024-0005.html
 	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/3839
 	NOTE: Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/8059



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6d15f6ce9689fbb9ef2361c5767072aa6bb98922

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6d15f6ce9689fbb9ef2361c5767072aa6bb98922
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241217/baf154ff/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list