<?xml version="1.0" encoding="utf-8"?>
  <?xml-stylesheet type="text/xsl" href="sa-render.xsl"?>
  <update from="huaweicloud.com" type="security" status="stable" version="1">
    <id>HCE1-SA-2024-0014</id>
    <title>An update for gstreamer-plugins-bad-free is now available for HCE 1.1</title>
    <severity>Important</severity>
    <release>HCE 1.1</release>
    <issued date="2024-05-27 09:02:17"/>
    <updated date="2024-05-27 09:02:17"/>
    <references>
      <reference href="https://nvd.nist.gov/vuln/detail/CVE-2023-44446" id="CVE-2023-44446" title="CVE-2023-44446 Base Score: 8.8 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" type="cve"/>
    </references>
    <description>Security Fix(es):

The Oracle Linux Bulletin lists all CVEs that had been resolved and announced in Oracle Linux Security Advisories (ELSA) in the last one month prior to the release of the bulletin. Oracle Linux Bulletins are published on the same day as Oracle Critical Patch Updates are released. These bulletins will also be updated for the following two months after their release (i.e., the two months between the normal quarterly Critical Patch Update publication dates) to cover all CVEs that had been resolved in those two months following the bulletin's publication. In addition, Oracle Linux Bulletins may also be updated for vulnerability issues deemed too critical to wait for the next scheduled bulletin publication date. (CVE-2023-44446)
</description>
    <pkglist>
      <collection short="HCE 1.1" package="gstreamer-plugins-bad-free">
        <name>HCE 1.1</name>
        <package arch="x86_64" name="gstreamer-plugins-bad-free" version="0.10.23" release="24.hce1c">
          <filename>gstreamer-plugins-bad-free-0.10.23-24.hce1c.x86_64.rpm</filename>
        </package>
      </collection>
    </pkglist>
  </update>
