CVE-2021-3522
Severity CVSS v4.0:
Pending analysis
Type:
CWE-125
Out-of-bounds Read
Publication date:
02/06/2021
Last modified:
28/09/2022
Description
GStreamer before 1.18.4 may perform an out-of-bounds read when handling certain ID3v2 tags.
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Base Score 2.0
4.30
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:gstreamer_project:gstreamer:*:*:*:*:*:*:*:* | 1.18.4 (excluding) | |
| cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:vmware_vsphere:*:* | ||
| cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:windows:*:* | ||
| cpe:2.3:a:netapp:e-series_santricity_os_controller:*:*:*:*:*:*:*:* | 11.0.0 (including) | 11.70.1 (including) |
| cpe:2.3:a:netapp:e-series_santricity_storage_manager:-:*:*:*:*:*:*:* | ||
| cpe:2.3:a:netapp:e-series_santricity_web_services:-:*:*:*:*:web_services_proxy:*:* | ||
| cpe:2.3:a:netapp:hci_management_node:-:*:*:*:*:*:*:* | ||
| cpe:2.3:a:netapp:oncommand_insight:-:*:*:*:*:*:*:* | ||
| cpe:2.3:a:netapp:oncommand_workflow_automation:-:*:*:*:*:*:*:* | ||
| cpe:2.3:a:netapp:santricity_unified_manager:-:*:*:*:*:*:*:* | ||
| cpe:2.3:a:netapp:snapmanager:-:*:*:*:*:oracle:*:* | ||
| cpe:2.3:a:netapp:snapmanager:-:*:*:*:*:sap:*:* | ||
| cpe:2.3:a:netapp:solidfire:-:*:*:*:*:*:*:* | ||
| cpe:2.3:a:oracle:openjdk:8:update301:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



