Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2009-0387

Array index error in the qtdemux_parse_samples function in gst/qtdemux/qtdemux.c in GStreamer Good Plug-ins (aka gst-plugins-good) 0.10.9 through 0.10.11 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted Sync Sample (aka stss) atom data in a malformed QuickTime media .mov file, related to "mark keyframes."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.153
EPSS Ranking 94.4%
CVSS Severity
CVSS v2 Score 9.3
References
Products affected by CVE-2009-0387


Contact Us

Shodan ® - All rights reserved