DOS / potential heap overwrite in mkv demuxing using...
High severity
Unreviewed
Published
Jul 20, 2022
to the GitHub Advisory Database
•
Updated Jun 27, 2023
Description
Published by the National Vulnerability Database
Jul 19, 2022
Published to the GitHub Advisory Database
Jul 20, 2022
Last updated
Jun 27, 2023
DOS / potential heap overwrite in mkv demuxing using HEADERSTRIP decompression. Integer overflow in matroskaparse element in gst_matroska_decompress_data function which causes a heap overflow. Due to restrictions on chunk sizes in the matroskademux element, the overflow can't be triggered, however the matroskaparse element has no size checks.
References