GStreamer before 1.18.4 may perform an out-of-bounds read when handling certain ID3v2 tags.
https://www.oracle.com/security-alerts/cpuoct2021.html
https://security.netapp.com/advisory/ntap-20211022-0004/
https://security.gentoo.org/glsa/202208-31
https://bugzilla.redhat.com/show_bug.cgi?id=1954761
Source: Mitre, NVD
Published: 2021-06-02
Updated: 2022-09-28
Base Score: 4.3
Vector: CVSS2#AV:N/AC:M/Au:N/C:N/I:N/A:P
Severity: Medium
Base Score: 5.5
Vector: CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H