<?xml version="1.0" encoding="utf-8"?>
  <?xml-stylesheet type="text/xsl" href="sa-render.xsl"?>
  <update from="huaweicloud.com" type="security" status="stable" version="1">
    <id>HCE2-SA-2024-0010</id>
    <title>An update for gstreamer1-plugins-bad-free is now available for HCE 2.0</title>
    <severity>Moderate</severity>
    <release>HCE 2.0</release>
    <issued date="2024-01-03 03:35:57"/>
    <updated date="2024-01-03 03:35:57"/>
    <references>
      <reference href="https://nvd.nist.gov/vuln/detail/CVE-2023-40475" id="CVE-2023-40475" title="CVE-2023-40475 Base Score: 5.5 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" type="cve"/>
      <reference href="https://nvd.nist.gov/vuln/detail/CVE-2023-40474" id="CVE-2023-40474" title="CVE-2023-40474 Base Score: 5.5 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" type="cve"/>
      <reference href="https://nvd.nist.gov/vuln/detail/CVE-2023-40476" id="CVE-2023-40476" title="CVE-2023-40476 Base Score: 5.5 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" type="cve"/>
    </references>
    <description>Security Fix(es):

A heap-buffer overflow flaw was found in the MXF file demuxer in the GStreamer Plugins Bad when handling malformed files with AES3 audio. This issue requires user interaction with the library and may allow a malicious user to cause an integer overflow before allocating the buffer, triggering a crash or code execution via heap manipulation, executing code in the context of the current process. (CVE-2023-40475)

A heap-buffer overflow flaw was found in the MXF file demuxer in the GStreamer Plugins Bad when handling malformed files with an uncompressed video. This issue requires user interaction with the library, and could allow a malicious user to cause an integer overflow before allocating the buffer, triggering a crash or code execution via heap manipulation, executing code in the context of the current process. (CVE-2023-40474)

A stack-based buffer overflow was found in the GStreamer Plugins Bad when handling malformed files with H.265 video streams. This issue requires user interaction with the library and may allow a malicious user to cause an integer overflow before allocating the buffer, triggering a crash or code execution via heap manipulation, executing code in the context of the current process. (CVE-2023-40476)
</description>
    <pkglist>
      <collection short="HCE 2.0" package="gstreamer1-plugins-bad-free">
        <name>HCE 2.0</name>
        <package arch="aarch64" name="gstreamer1-plugins-bad-free" version="1.16.2" release="6.hce2">
          <filename>gstreamer1-plugins-bad-free-1.16.2-6.hce2.aarch64.rpm</filename>
        </package>
        <package arch="aarch64" name="gstreamer1-plugins-bad-free-devel" version="1.16.2" release="6.hce2">
          <filename>gstreamer1-plugins-bad-free-devel-1.16.2-6.hce2.aarch64.rpm</filename>
        </package>
        <package arch="x86_64" name="gstreamer1-plugins-bad-free" version="1.16.2" release="6.hce2">
          <filename>gstreamer1-plugins-bad-free-1.16.2-6.hce2.x86_64.rpm</filename>
        </package>
        <package arch="x86_64" name="gstreamer1-plugins-bad-free-devel" version="1.16.2" release="6.hce2">
          <filename>gstreamer1-plugins-bad-free-devel-1.16.2-6.hce2.x86_64.rpm</filename>
        </package>
      </collection>
    </pkglist>
  </update>
