freedesktop security advisories
3 threat alerts tracking vulnerabilities and security advisories that affect freedesktop products.
Vulnios monitors freedesktop CVE feeds, vendor advisories, CISA KEV listings, and exploit-prediction data continuously. Each alert below is enriched with severity, exploitation status, affected products, and a remediation path. Use this page to scan recent freedesktop security news in one place, or click into an individual alert for full detail.
Critical Vulnerability: CVE-2021-3185 — freedesktop — gst-plugins-bad
A flaw was found in the gstreamer h264 component of gst-plugins-bad before v1.18.1 where when parsing a h264 header, an attacker could cause the stack to be smashed, memory corruption and possibly cod
criticalCVE-2021-3185Critical Vulnerability: CVE-2019-20367 — freedesktop, debian — libbsd, debian_linux
nlist.c in libbsd before 0.10.0 has an out-of-bounds read during a comparison for a symbol name from the string table (strtab).
criticalCVE-2019-20367Critical Vulnerability: CVE-2019-9631 — freedesktop, fedoraproject — poppler, fedora
Poppler 0.74.0 has a heap-based buffer over-read in the CairoRescaleBox.cc downsample_row_box_filter function.
criticalCVE-2019-9631
Track freedesktop exposure across your environment
Vulnios automatically cross-references your asset inventory against new freedesktop CVEs and surfaces only what affects you. No more sifting manually — actionable findings only.
Start a free scan