<?xml version="1.0" encoding="UTF-8"?>
<cvrfdoc xmlns="http://www.icasi.org/CVRF/schema/cvrf/1.1" xmlns:cvrf="http://www.icasi.org/CVRF/schema/cvrf/1.1">
  <DocumentTitle xml:lang="en">Security update for gstreamer-plugins-base</DocumentTitle>
  <DocumentType>SUSE Patch</DocumentType>
  <DocumentPublisher Type="Vendor">
    <ContactDetails>security@suse.de</ContactDetails>
    <IssuingAuthority>SUSE Security Team</IssuingAuthority>
  </DocumentPublisher>
  <DocumentTracking>
    <Identification>
      <ID>SUSE-SU-2025:0052-1</ID>
    </Identification>
    <Status>Final</Status>
    <Version>1</Version>
    <RevisionHistory>
      <Revision>
        <Number>1</Number>
        <Date>2025-01-09T16:35:38Z</Date>
        <Description>current</Description>
      </Revision>
    </RevisionHistory>
    <InitialReleaseDate>2025-01-09T16:35:38Z</InitialReleaseDate>
    <CurrentReleaseDate>2025-01-09T16:35:38Z</CurrentReleaseDate>
    <Generator>
      <Engine>cve-database/bin/generate-cvrf.pl</Engine>
      <Date>2017-02-24T01:00:00Z</Date>
    </Generator>
  </DocumentTracking>
  <DocumentNotes>
    <Note Title="Topic" Type="Summary" Ordinal="1" xml:lang="en">Security update for gstreamer-plugins-base</Note>
    <Note Title="Details" Type="General" Ordinal="2" xml:lang="en">This update for gstreamer-plugins-base fixes the following issues:

- CVE-2024-47538: Fixed a stack-buffer overflow in vorbis_handle_identification_packet. (bsc#1234415)
- CVE-2024-47835: Fixed a NULL-pointer dereference in LRC subtitle parser. (bsc#1234450)
- CVE-2024-47615: Fixed an out-of-bounds write in Ogg demuxer. (bsc#1234456)
- CVE-2024-47541: Fixed an out-of-bounds write in SSA subtitle parser. (bsc#1234459)
- CVE-2024-47542: Fixed an ID3v2 parser out-of-bounds read and NULL-pointer dereference. (bsc#1234460)
- CVE-2024-47613: Fixed a NULL-pointer dereference in gdk-pixbuf decoder. (boo#1234447)
- CVE-2024-47607: Fixed a stack buffer-overflow in Opus decoder. (bsc#1234455)
</Note>
    <Note Title="Terms of Use" Type="Legal Disclaimer" Ordinal="3" xml:lang="en">The CVRF data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).</Note>
    <Note Title="Patchnames" Type="Details" Ordinal="4" xml:lang="en">SUSE-2025-52,SUSE-SLE-SERVER-12-SP5-LTSS-2025-52,SUSE-SLE-SERVER-12-SP5-LTSS-EXTENDED-SECURITY-2025-52</Note>
  </DocumentNotes>
  <DocumentDistribution xml:lang="en">Copyright SUSE LLC under the Creative Commons License 4.0 with Attribution (CC-BY-4.0)</DocumentDistribution>
  <DocumentReferences>
    <Reference Type="Self">
      <URL>https://www.suse.com/support/update/announcement/2025/suse-su-20250052-1/</URL>
      <Description>Link for SUSE-SU-2025:0052-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2025-January/020082.html</URL>
      <Description>E-Mail link for SUSE-SU-2025:0052-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/support/security/rating/</URL>
      <Description>SUSE Security Ratings</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1234415</URL>
      <Description>SUSE Bug 1234415</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1234447</URL>
      <Description>SUSE Bug 1234447</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1234450</URL>
      <Description>SUSE Bug 1234450</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1234455</URL>
      <Description>SUSE Bug 1234455</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1234456</URL>
      <Description>SUSE Bug 1234456</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1234459</URL>
      <Description>SUSE Bug 1234459</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://bugzilla.suse.com/1234460</URL>
      <Description>SUSE Bug 1234460</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2024-47538/</URL>
      <Description>SUSE CVE CVE-2024-47538 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2024-47541/</URL>
      <Description>SUSE CVE CVE-2024-47541 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2024-47542/</URL>
      <Description>SUSE CVE CVE-2024-47542 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2024-47607/</URL>
      <Description>SUSE CVE CVE-2024-47607 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2024-47613/</URL>
      <Description>SUSE CVE CVE-2024-47613 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2024-47615/</URL>
      <Description>SUSE CVE CVE-2024-47615 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2024-47835/</URL>
      <Description>SUSE CVE CVE-2024-47835 page</Description>
    </Reference>
  </DocumentReferences>
  <ProductTree xmlns="http://www.icasi.org/CVRF/schema/prod/1.1">
    <Branch Type="Product Family" Name="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise Server 12 SP5-LTSS">
        <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS" CPE="cpe:/o:suse:sles-ltss-extended-security:12:sp5">SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
        <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5" CPE="cpe:/o:suse:sles-ltss-extended-security:12:sp5">SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Version" Name="gstreamer-plugins-base-1.8.3-13.18.1">
      <FullProductName ProductID="gstreamer-plugins-base-1.8.3-13.18.1">gstreamer-plugins-base-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="gstreamer-plugins-base-32bit-1.8.3-13.18.1">
      <FullProductName ProductID="gstreamer-plugins-base-32bit-1.8.3-13.18.1">gstreamer-plugins-base-32bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="gstreamer-plugins-base-64bit-1.8.3-13.18.1">
      <FullProductName ProductID="gstreamer-plugins-base-64bit-1.8.3-13.18.1">gstreamer-plugins-base-64bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="gstreamer-plugins-base-devel-1.8.3-13.18.1">
      <FullProductName ProductID="gstreamer-plugins-base-devel-1.8.3-13.18.1">gstreamer-plugins-base-devel-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="gstreamer-plugins-base-devel-32bit-1.8.3-13.18.1">
      <FullProductName ProductID="gstreamer-plugins-base-devel-32bit-1.8.3-13.18.1">gstreamer-plugins-base-devel-32bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="gstreamer-plugins-base-devel-64bit-1.8.3-13.18.1">
      <FullProductName ProductID="gstreamer-plugins-base-devel-64bit-1.8.3-13.18.1">gstreamer-plugins-base-devel-64bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="gstreamer-plugins-base-doc-1.8.3-13.18.1">
      <FullProductName ProductID="gstreamer-plugins-base-doc-1.8.3-13.18.1">gstreamer-plugins-base-doc-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="gstreamer-plugins-base-lang-1.8.3-13.18.1">
      <FullProductName ProductID="gstreamer-plugins-base-lang-1.8.3-13.18.1">gstreamer-plugins-base-lang-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstallocators-1_0-0-1.8.3-13.18.1">
      <FullProductName ProductID="libgstallocators-1_0-0-1.8.3-13.18.1">libgstallocators-1_0-0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstallocators-1_0-0-32bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstallocators-1_0-0-32bit-1.8.3-13.18.1">libgstallocators-1_0-0-32bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstallocators-1_0-0-64bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstallocators-1_0-0-64bit-1.8.3-13.18.1">libgstallocators-1_0-0-64bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstapp-1_0-0-1.8.3-13.18.1">
      <FullProductName ProductID="libgstapp-1_0-0-1.8.3-13.18.1">libgstapp-1_0-0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstapp-1_0-0-32bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstapp-1_0-0-32bit-1.8.3-13.18.1">libgstapp-1_0-0-32bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstapp-1_0-0-64bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstapp-1_0-0-64bit-1.8.3-13.18.1">libgstapp-1_0-0-64bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstaudio-1_0-0-1.8.3-13.18.1">
      <FullProductName ProductID="libgstaudio-1_0-0-1.8.3-13.18.1">libgstaudio-1_0-0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstaudio-1_0-0-32bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstaudio-1_0-0-32bit-1.8.3-13.18.1">libgstaudio-1_0-0-32bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstaudio-1_0-0-64bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstaudio-1_0-0-64bit-1.8.3-13.18.1">libgstaudio-1_0-0-64bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstfft-1_0-0-1.8.3-13.18.1">
      <FullProductName ProductID="libgstfft-1_0-0-1.8.3-13.18.1">libgstfft-1_0-0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstfft-1_0-0-32bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstfft-1_0-0-32bit-1.8.3-13.18.1">libgstfft-1_0-0-32bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstfft-1_0-0-64bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstfft-1_0-0-64bit-1.8.3-13.18.1">libgstfft-1_0-0-64bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstpbutils-1_0-0-1.8.3-13.18.1">
      <FullProductName ProductID="libgstpbutils-1_0-0-1.8.3-13.18.1">libgstpbutils-1_0-0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstpbutils-1_0-0-32bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstpbutils-1_0-0-32bit-1.8.3-13.18.1">libgstpbutils-1_0-0-32bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstpbutils-1_0-0-64bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstpbutils-1_0-0-64bit-1.8.3-13.18.1">libgstpbutils-1_0-0-64bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstriff-1_0-0-1.8.3-13.18.1">
      <FullProductName ProductID="libgstriff-1_0-0-1.8.3-13.18.1">libgstriff-1_0-0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstriff-1_0-0-32bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstriff-1_0-0-32bit-1.8.3-13.18.1">libgstriff-1_0-0-32bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstriff-1_0-0-64bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstriff-1_0-0-64bit-1.8.3-13.18.1">libgstriff-1_0-0-64bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstrtp-1_0-0-1.8.3-13.18.1">
      <FullProductName ProductID="libgstrtp-1_0-0-1.8.3-13.18.1">libgstrtp-1_0-0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstrtp-1_0-0-32bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstrtp-1_0-0-32bit-1.8.3-13.18.1">libgstrtp-1_0-0-32bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstrtp-1_0-0-64bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstrtp-1_0-0-64bit-1.8.3-13.18.1">libgstrtp-1_0-0-64bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstrtsp-1_0-0-1.8.3-13.18.1">
      <FullProductName ProductID="libgstrtsp-1_0-0-1.8.3-13.18.1">libgstrtsp-1_0-0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstrtsp-1_0-0-32bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstrtsp-1_0-0-32bit-1.8.3-13.18.1">libgstrtsp-1_0-0-32bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstrtsp-1_0-0-64bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstrtsp-1_0-0-64bit-1.8.3-13.18.1">libgstrtsp-1_0-0-64bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstsdp-1_0-0-1.8.3-13.18.1">
      <FullProductName ProductID="libgstsdp-1_0-0-1.8.3-13.18.1">libgstsdp-1_0-0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstsdp-1_0-0-32bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstsdp-1_0-0-32bit-1.8.3-13.18.1">libgstsdp-1_0-0-32bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstsdp-1_0-0-64bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstsdp-1_0-0-64bit-1.8.3-13.18.1">libgstsdp-1_0-0-64bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgsttag-1_0-0-1.8.3-13.18.1">
      <FullProductName ProductID="libgsttag-1_0-0-1.8.3-13.18.1">libgsttag-1_0-0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgsttag-1_0-0-32bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgsttag-1_0-0-32bit-1.8.3-13.18.1">libgsttag-1_0-0-32bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgsttag-1_0-0-64bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgsttag-1_0-0-64bit-1.8.3-13.18.1">libgsttag-1_0-0-64bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstvideo-1_0-0-1.8.3-13.18.1">
      <FullProductName ProductID="libgstvideo-1_0-0-1.8.3-13.18.1">libgstvideo-1_0-0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstvideo-1_0-0-32bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstvideo-1_0-0-32bit-1.8.3-13.18.1">libgstvideo-1_0-0-32bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libgstvideo-1_0-0-64bit-1.8.3-13.18.1">
      <FullProductName ProductID="libgstvideo-1_0-0-64bit-1.8.3-13.18.1">libgstvideo-1_0-0-64bit-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="typelib-1_0-GstAllocators-1_0-1.8.3-13.18.1">
      <FullProductName ProductID="typelib-1_0-GstAllocators-1_0-1.8.3-13.18.1">typelib-1_0-GstAllocators-1_0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="typelib-1_0-GstApp-1_0-1.8.3-13.18.1">
      <FullProductName ProductID="typelib-1_0-GstApp-1_0-1.8.3-13.18.1">typelib-1_0-GstApp-1_0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="typelib-1_0-GstAudio-1_0-1.8.3-13.18.1">
      <FullProductName ProductID="typelib-1_0-GstAudio-1_0-1.8.3-13.18.1">typelib-1_0-GstAudio-1_0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="typelib-1_0-GstFft-1_0-1.8.3-13.18.1">
      <FullProductName ProductID="typelib-1_0-GstFft-1_0-1.8.3-13.18.1">typelib-1_0-GstFft-1_0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="typelib-1_0-GstPbutils-1_0-1.8.3-13.18.1">
      <FullProductName ProductID="typelib-1_0-GstPbutils-1_0-1.8.3-13.18.1">typelib-1_0-GstPbutils-1_0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="typelib-1_0-GstRtp-1_0-1.8.3-13.18.1">
      <FullProductName ProductID="typelib-1_0-GstRtp-1_0-1.8.3-13.18.1">typelib-1_0-GstRtp-1_0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="typelib-1_0-GstRtsp-1_0-1.8.3-13.18.1">
      <FullProductName ProductID="typelib-1_0-GstRtsp-1_0-1.8.3-13.18.1">typelib-1_0-GstRtsp-1_0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="typelib-1_0-GstSdp-1_0-1.8.3-13.18.1">
      <FullProductName ProductID="typelib-1_0-GstSdp-1_0-1.8.3-13.18.1">typelib-1_0-GstSdp-1_0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="typelib-1_0-GstTag-1_0-1.8.3-13.18.1">
      <FullProductName ProductID="typelib-1_0-GstTag-1_0-1.8.3-13.18.1">typelib-1_0-GstTag-1_0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="typelib-1_0-GstVideo-1_0-1.8.3-13.18.1">
      <FullProductName ProductID="typelib-1_0-GstVideo-1_0-1.8.3-13.18.1">typelib-1_0-GstVideo-1_0-1.8.3-13.18.1</FullProductName>
    </Branch>
    <Relationship ProductReference="gstreamer-plugins-base-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-1.8.3-13.18.1">gstreamer-plugins-base-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="gstreamer-plugins-base-devel-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-devel-1.8.3-13.18.1">gstreamer-plugins-base-devel-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="gstreamer-plugins-base-lang-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-lang-1.8.3-13.18.1">gstreamer-plugins-base-lang-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstallocators-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS:libgstallocators-1_0-0-1.8.3-13.18.1">libgstallocators-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstapp-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS:libgstapp-1_0-0-1.8.3-13.18.1">libgstapp-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstapp-1_0-0-32bit-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS:libgstapp-1_0-0-32bit-1.8.3-13.18.1">libgstapp-1_0-0-32bit-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstaudio-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS:libgstaudio-1_0-0-1.8.3-13.18.1">libgstaudio-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstaudio-1_0-0-32bit-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS:libgstaudio-1_0-0-32bit-1.8.3-13.18.1">libgstaudio-1_0-0-32bit-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstfft-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS:libgstfft-1_0-0-1.8.3-13.18.1">libgstfft-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstpbutils-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS:libgstpbutils-1_0-0-1.8.3-13.18.1">libgstpbutils-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstpbutils-1_0-0-32bit-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS:libgstpbutils-1_0-0-32bit-1.8.3-13.18.1">libgstpbutils-1_0-0-32bit-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstriff-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS:libgstriff-1_0-0-1.8.3-13.18.1">libgstriff-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstrtp-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS:libgstrtp-1_0-0-1.8.3-13.18.1">libgstrtp-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstrtsp-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS:libgstrtsp-1_0-0-1.8.3-13.18.1">libgstrtsp-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstsdp-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS:libgstsdp-1_0-0-1.8.3-13.18.1">libgstsdp-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgsttag-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS:libgsttag-1_0-0-1.8.3-13.18.1">libgsttag-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgsttag-1_0-0-32bit-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS:libgsttag-1_0-0-32bit-1.8.3-13.18.1">libgsttag-1_0-0-32bit-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstvideo-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS:libgstvideo-1_0-0-1.8.3-13.18.1">libgstvideo-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstvideo-1_0-0-32bit-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server 12 SP5-LTSS">
      <FullProductName ProductID="SUSE Linux Enterprise Server 12 SP5-LTSS:libgstvideo-1_0-0-32bit-1.8.3-13.18.1">libgstvideo-1_0-0-32bit-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server 12 SP5-LTSS</FullProductName>
    </Relationship>
    <Relationship ProductReference="gstreamer-plugins-base-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-1.8.3-13.18.1">gstreamer-plugins-base-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
    </Relationship>
    <Relationship ProductReference="gstreamer-plugins-base-devel-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-devel-1.8.3-13.18.1">gstreamer-plugins-base-devel-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
    </Relationship>
    <Relationship ProductReference="gstreamer-plugins-base-lang-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-lang-1.8.3-13.18.1">gstreamer-plugins-base-lang-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstallocators-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstallocators-1_0-0-1.8.3-13.18.1">libgstallocators-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstapp-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstapp-1_0-0-1.8.3-13.18.1">libgstapp-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstapp-1_0-0-32bit-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstapp-1_0-0-32bit-1.8.3-13.18.1">libgstapp-1_0-0-32bit-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstaudio-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstaudio-1_0-0-1.8.3-13.18.1">libgstaudio-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstaudio-1_0-0-32bit-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstaudio-1_0-0-32bit-1.8.3-13.18.1">libgstaudio-1_0-0-32bit-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstfft-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstfft-1_0-0-1.8.3-13.18.1">libgstfft-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstpbutils-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstpbutils-1_0-0-1.8.3-13.18.1">libgstpbutils-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstpbutils-1_0-0-32bit-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstpbutils-1_0-0-32bit-1.8.3-13.18.1">libgstpbutils-1_0-0-32bit-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstriff-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstriff-1_0-0-1.8.3-13.18.1">libgstriff-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstrtp-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstrtp-1_0-0-1.8.3-13.18.1">libgstrtp-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstrtsp-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstrtsp-1_0-0-1.8.3-13.18.1">libgstrtsp-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstsdp-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstsdp-1_0-0-1.8.3-13.18.1">libgstsdp-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgsttag-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgsttag-1_0-0-1.8.3-13.18.1">libgsttag-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgsttag-1_0-0-32bit-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgsttag-1_0-0-32bit-1.8.3-13.18.1">libgsttag-1_0-0-32bit-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstvideo-1_0-0-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstvideo-1_0-0-1.8.3-13.18.1">libgstvideo-1_0-0-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
    </Relationship>
    <Relationship ProductReference="libgstvideo-1_0-0-32bit-1.8.3-13.18.1" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5">
      <FullProductName ProductID="SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstvideo-1_0-0-32bit-1.8.3-13.18.1">libgstvideo-1_0-0-32bit-1.8.3-13.18.1 as a component of SUSE Linux Enterprise Server LTSS Extended Security 12 SP5</FullProductName>
    </Relationship>
  </ProductTree>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="1">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">GStreamer is a library for constructing graphs of media-handling components. A stack-buffer overflow has been detected in the `vorbis_handle_identification_packet` function within `gstvorbisdec.c`. The position array is a stack-allocated buffer of size 64. If vd-&gt;vi.channels exceeds 64, the for loop will write beyond the boundaries of the position array. The value written will always be `GST_AUDIO_CHANNEL_POSITION_NONE`. This vulnerability allows someone to overwrite the EIP address allocated in the stack. Additionally, this bug can overwrite the `GstAudioInfo` info structure. This vulnerability is fixed in 1.24.10.</Note>
    </Notes>
    <CVE>CVE-2024-47538</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-devel-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-lang-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstallocators-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstapp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstapp-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstaudio-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstaudio-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstfft-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstpbutils-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstpbutils-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstriff-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstrtp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstrtsp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstsdp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgsttag-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgsttag-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstvideo-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstvideo-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-devel-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-lang-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstallocators-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstapp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstapp-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstaudio-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstaudio-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstfft-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstpbutils-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstpbutils-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstriff-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstrtp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstrtsp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstsdp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgsttag-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgsttag-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstvideo-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstvideo-1_0-0-32bit-1.8.3-13.18.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>important</Description>
      </Threat>
    </Threats>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2025/suse-su-20250052-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2024-47538.html</URL>
        <Description>CVE-2024-47538</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1234415</URL>
        <Description>SUSE Bug 1234415</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="2">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">GStreamer is a library for constructing graphs of media-handling components. An OOB-write vulnerability has been identified in the gst_ssa_parse_remove_override_codes function of the gstssaparse.c file. This function is responsible for parsing and removing SSA (SubStation Alpha) style override codes, which are enclosed in curly brackets ({}). The issue arises when a closing curly bracket "}" appears before an opening curly bracket "{" in the input string. In this case, memmove() incorrectly duplicates a substring. With each successive loop iteration, the size passed to memmove() becomes progressively larger (strlen(end+1)), leading to a write beyond the allocated memory bounds. This vulnerability is fixed in 1.24.10.</Note>
    </Notes>
    <CVE>CVE-2024-47541</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-devel-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-lang-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstallocators-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstapp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstapp-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstaudio-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstaudio-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstfft-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstpbutils-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstpbutils-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstriff-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstrtp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstrtsp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstsdp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgsttag-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgsttag-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstvideo-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstvideo-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-devel-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-lang-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstallocators-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstapp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstapp-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstaudio-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstaudio-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstfft-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstpbutils-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstpbutils-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstriff-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstrtp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstrtsp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstsdp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgsttag-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgsttag-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstvideo-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstvideo-1_0-0-32bit-1.8.3-13.18.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>important</Description>
      </Threat>
    </Threats>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2025/suse-su-20250052-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2024-47541.html</URL>
        <Description>CVE-2024-47541</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1234459</URL>
        <Description>SUSE Bug 1234459</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="3">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">GStreamer is a library for constructing graphs of media-handling components. A null pointer dereference has been discovered in the id3v2_read_synch_uint function, located in id3v2.c. If id3v2_read_synch_uint is called with a null work-&gt;hdr.frame_data, the pointer guint8 *data is accessed without validation, resulting in a null pointer dereference. This vulnerability can result in a Denial of Service (DoS) by triggering a segmentation fault (SEGV). This vulnerability is fixed in 1.24.10.</Note>
    </Notes>
    <CVE>CVE-2024-47542</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-devel-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-lang-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstallocators-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstapp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstapp-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstaudio-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstaudio-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstfft-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstpbutils-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstpbutils-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstriff-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstrtp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstrtsp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstsdp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgsttag-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgsttag-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstvideo-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstvideo-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-devel-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-lang-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstallocators-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstapp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstapp-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstaudio-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstaudio-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstfft-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstpbutils-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstpbutils-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstriff-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstrtp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstrtsp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstsdp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgsttag-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgsttag-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstvideo-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstvideo-1_0-0-32bit-1.8.3-13.18.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>important</Description>
      </Threat>
    </Threats>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2025/suse-su-20250052-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2024-47542.html</URL>
        <Description>CVE-2024-47542</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1234460</URL>
        <Description>SUSE Bug 1234460</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="4">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">GStreamer is a library for constructing graphs of media-handling components.  stack-buffer overflow has been detected in the gst_opus_dec_parse_header function within `gstopusdec.c'. The pos array is a stack-allocated buffer of size 64. If n_channels exceeds 64, the for loop will write beyond the boundaries of the pos array. The value written will always be GST_AUDIO_CHANNEL_POSITION_NONE. This bug allows to overwrite the EIP address allocated in the stack. This vulnerability is fixed in 1.24.10.</Note>
    </Notes>
    <CVE>CVE-2024-47607</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-devel-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-lang-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstallocators-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstapp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstapp-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstaudio-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstaudio-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstfft-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstpbutils-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstpbutils-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstriff-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstrtp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstrtsp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstsdp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgsttag-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgsttag-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstvideo-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstvideo-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-devel-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-lang-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstallocators-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstapp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstapp-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstaudio-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstaudio-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstfft-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstpbutils-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstpbutils-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstriff-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstrtp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstrtsp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstsdp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgsttag-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgsttag-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstvideo-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstvideo-1_0-0-32bit-1.8.3-13.18.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>important</Description>
      </Threat>
    </Threats>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2025/suse-su-20250052-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2024-47607.html</URL>
        <Description>CVE-2024-47607</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1234455</URL>
        <Description>SUSE Bug 1234455</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="5">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">GStreamer is a library for constructing graphs of media-handling components. A null pointer dereference vulnerability has been identified in `gst_gdk_pixbuf_dec_flush` within `gstgdkpixbufdec.c`. This function invokes `memcpy`, using `out_pix` as the destination address. `out_pix` is expected to point to the frame 0 from the frame structure, which is read from the input file. However, in certain situations, it can points to a NULL frame, causing the subsequent call to `memcpy` to attempt writing to the null address (0x00), leading to a null pointer dereference. This vulnerability can result in a Denial of Service (DoS) by triggering a segmentation fault (SEGV). This vulnerability is fixed in 1.24.10.</Note>
    </Notes>
    <CVE>CVE-2024-47613</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-devel-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-lang-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstallocators-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstapp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstapp-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstaudio-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstaudio-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstfft-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstpbutils-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstpbutils-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstriff-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstrtp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstrtsp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstsdp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgsttag-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgsttag-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstvideo-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstvideo-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-devel-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-lang-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstallocators-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstapp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstapp-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstaudio-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstaudio-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstfft-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstpbutils-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstpbutils-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstriff-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstrtp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstrtsp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstsdp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgsttag-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgsttag-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstvideo-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstvideo-1_0-0-32bit-1.8.3-13.18.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>important</Description>
      </Threat>
    </Threats>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2025/suse-su-20250052-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2024-47613.html</URL>
        <Description>CVE-2024-47613</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1234447</URL>
        <Description>SUSE Bug 1234447</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="6">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">GStreamer is a library for constructing graphs of media-handling components. An OOB-Write has been detected in the function gst_parse_vorbis_setup_packet within vorbis_parse.c. The integer size is read from the input file without proper validation. As a result, size can exceed the fixed size of the pad-&gt;vorbis_mode_sizes array (which size is 256). When this happens, the for loop overwrites the entire pad structure with 0s and 1s, affecting adjacent memory as well. This OOB-write can overwrite up to 380 bytes of memory beyond the boundaries of the pad-&gt;vorbis_mode_sizes array. This vulnerability is fixed in 1.24.10.</Note>
    </Notes>
    <CVE>CVE-2024-47615</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-devel-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-lang-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstallocators-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstapp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstapp-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstaudio-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstaudio-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstfft-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstpbutils-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstpbutils-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstriff-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstrtp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstrtsp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstsdp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgsttag-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgsttag-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstvideo-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstvideo-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-devel-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-lang-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstallocators-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstapp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstapp-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstaudio-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstaudio-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstfft-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstpbutils-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstpbutils-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstriff-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstrtp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstrtsp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstsdp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgsttag-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgsttag-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstvideo-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstvideo-1_0-0-32bit-1.8.3-13.18.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>important</Description>
      </Threat>
    </Threats>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2025/suse-su-20250052-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2024-47615.html</URL>
        <Description>CVE-2024-47615</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1234456</URL>
        <Description>SUSE Bug 1234456</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="7">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">GStreamer is a library for constructing graphs of media-handling components. A null pointer dereference vulnerability has been detected in the parse_lrc function within gstsubparse.c. The parse_lrc function calls strchr() to find the character ']' in the string line. The pointer returned by this call is then passed to g_strdup(). However, if the string line does not contain the character ']', strchr() returns NULL, and a call to g_strdup(start + 1) leads to a null pointer dereference. This vulnerability is fixed in 1.24.10.</Note>
    </Notes>
    <CVE>CVE-2024-47835</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-devel-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:gstreamer-plugins-base-lang-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstallocators-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstapp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstapp-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstaudio-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstaudio-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstfft-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstpbutils-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstpbutils-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstriff-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstrtp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstrtsp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstsdp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgsttag-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgsttag-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstvideo-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server 12 SP5-LTSS:libgstvideo-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-devel-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:gstreamer-plugins-base-lang-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstallocators-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstapp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstapp-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstaudio-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstaudio-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstfft-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstpbutils-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstpbutils-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstriff-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstrtp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstrtsp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstsdp-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgsttag-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgsttag-1_0-0-32bit-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstvideo-1_0-0-1.8.3-13.18.1</ProductID>
        <ProductID>SUSE Linux Enterprise Server LTSS Extended Security 12 SP5:libgstvideo-1_0-0-32bit-1.8.3-13.18.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>important</Description>
      </Threat>
    </Threats>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL>https://www.suse.com/support/update/announcement/2025/suse-su-20250052-1/</URL>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2024-47835.html</URL>
        <Description>CVE-2024-47835</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1234450</URL>
        <Description>SUSE Bug 1234450</Description>
      </Reference>
    </References>
  </Vulnerability>
</cvrfdoc>
