Security Advisory

CVE-2022-1925

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-07-19 19:10:49
Last updated 2024-08-03 00:17:00
Assigner redhat
State PUBLISHED

Description

DOS / potential heap overwrite in mkv demuxing using HEADERSTRIP decompression. Integer overflow in matroskaparse element in gst_matroska_decompress_data function which causes a heap overflow. Due to restrictions on chunk sizes in the matroskademux element, the overflow cant be triggered, however the matroskaparse element has no size checks.