Fedora 9 : gstreamer-plugins-good-0.10.8-10.fc9 (2009-1343)

high Nessus Plugin ID 35734

Synopsis

The remote Fedora host is missing a security update.

Description

- Mon Feb 2 2009 - Bastien Nocera <bnocera at redhat.com>
- 0.10.8-10

- Patch for overflows in the QT demuxer (#481267)

- Tue Aug 12 2008 Adam Jackson <ajax at redhat.com> 0.10.8-9

- gst-plugins-good-0.10.8-http-auth.patch: Fix http auth. (#457952)

- Mon Jul 21 2008 Adam Jackson <ajax at redhat.com> 0.10.8-8

- gst-plugins-good-0.10.8-v4l2-progressive-fix.patch:
Backport v4l2 interlace/progressive fixes. (#454534)

- Thu Jun 19 2008 Adam Jackson <ajax at redhat.com> 0.10.8-7

- gst-plugins-good-0.10.8-speex-nego.patch: Backport speex channel and rate negotiation from 0.10.9.
(#451391)

- Tue Jun 17 2008 - Bastien Nocera <bnocera at redhat.com>
- 0.10.8-6

- Really fix the default audio output not being correct

- Tue Jun 3 2008 - Bastien Nocera <bnocera at redhat.com> - 0.10.8-5

- Fix compilation of the v4l2 plugin with newer kernels

- Mon Jun 2 2008 - Bastien Nocera <bnocera at redhat.com> - 0.10.8-4

- Work-around bug that would set the default audio output to 'GOOM!' See http://bugzilla.gnome.org/show_bug.cgi?id=532295

- Wed May 21 2008 Tom 'spot' Callaway <tcallawa at redhat.com> 0.10.8-3

- fix license tag

- Wed May 21 2008 Adam Jackson <ajax at redhat.com> 0.10.8-2

- BR: libsoup-devel and package the soup http src plugin. (#447604)

- s/Fedora Core/Fedora/

- Thu Apr 24 2008 - Bastien Nocera <bnocera at redhat.com> - 0.10.8-1

- Update to 0.10.8

- Thu Apr 10 2008 - Bastien Nocera <bnocera at redhat.com> - 0.10.7-2

- Add patch to unbreak the QuickTime demuxer plugin

Note that Tenable Network Security has extracted the preceding description block directly from the Fedora security advisory. Tenable has attempted to automatically clean and format it as much as possible without introducing additional issues.

Solution

Update the affected gstreamer-plugins-good package.

See Also

https://bugzilla.gnome.org/show_bug.cgi?id=532295

https://bugzilla.redhat.com/show_bug.cgi?id=481267

https://bugzilla.redhat.com/show_bug.cgi?id=483736

https://bugzilla.redhat.com/show_bug.cgi?id=483737

http://www.nessus.org/u?e39f52cc

Plugin Details

Severity: High

ID: 35734

File Name: fedora_2009-1343.nasl

Version: 1.16

Type: local

Agent: unix

Published: 2/25/2009

Updated: 1/11/2021

Supported Sensors: Agentless Assessment, Continuous Assessment, Frictionless Assessment Agent, Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 6.7

CVSS v2

Risk Factor: High

Base Score: 9.3

Temporal Score: 8.1

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: cpe:/o:fedoraproject:fedora:9, p-cpe:/a:fedoraproject:fedora:gstreamer-plugins-good

Required KB Items: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list

Exploit Ease: No known exploits are available

Patch Publication Date: 2/5/2009

Reference Information

CVE: CVE-2009-0386, CVE-2009-0387

BID: 33405

CWE: 119

FEDORA: 2009-1343