CVE-2016-10199 | GStreamer up to 1.10.2 Tag Value gst/isomp4/qtdemux.c qtdemux_tag_add_str_full out-of-bounds (FEDORA-2017-1fc4026d15 / Nessus ID 97240)
A vulnerability classified as problematic has been found in GStreamer up to 1.10.2. This affects the function qtdemux_tag_add_str_full of the file gst/isomp4/qtdemux.c of the component Tag Value Handler. Performing a manipulation results in out-of-bounds read.
This vulnerability was named CVE-2016-10199. The attack may be initiated remotely. There is no available exploit.
It is recommended to upgrade the affected component.