CVE-2009-0398: gstreamer-plugins: Array index error while parsing malformed QuickTime media files

Severity: Critical

CVSS Score: 9.3

Array index error in the gst_qtp_trak_handler function in gst/qtdemux/qtdemux.c in GStreamer Plug-ins (aka gstreamer-plugins) 0.6.0 allows remote attackers to have an unknown impact via a crafted QuickTime media file.