CVE-2024-47606 | GStreamer up to 1.24.9 qtdemux.c qtdemux_parse_theora_extension integer overflow (GHSL-2024-166 / Nessus ID 213029)
A vulnerability described as critical has been identified in GStreamer up to 1.24.9. Affected by this vulnerability is the function qtdemux_parse_theora_extension of the file qtdemux.c. Such manipulation leads to integer overflow.
This vulnerability is documented as CVE-2024-47606. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is recommended.