Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-14935

Опубликовано: 07 июл. 2026
Источник: debian
EPSS Низкий

Описание

A logic vulnerability was found in GStreamer's webrtcbin component. The _check_sdp_crypto() function contains an inverted boolean condition that causes it to accept remote SDP offers or answers that lack the required a=fingerprint attribute, while incorrectly rejecting those that include it. An attacker with the ability to intercept and modify WebRTC signaling messages could exploit this to bypass the SDP-level DTLS certificate fingerprint binding, weakening defenses against man-in-the-middle attacks on media streams.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gst-plugins-bad1.0fixed1.28.5-1package
gst-plugins-bad1.0no-dsatrixiepackage

Примечания

  • https://gstreamer.freedesktop.org/security/sa-2026-0061.html

  • https://gitlab.freedesktop.org/gstreamer/gstreamer/-/work_items/5171 (private)

  • https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/12052

  • Fixed by: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/commit/da08b8584fb0edbc1d5183900729b683c7dd85be (1.28.5)

EPSS

Процентиль: 5%
0.0015
Низкий

Связанные уязвимости

CVSS3: 3.7
ubuntu
около 1 месяца назад

A logic vulnerability was found in GStreamer's webrtcbin component. The _check_sdp_crypto() function contains an inverted boolean condition that causes it to accept remote SDP offers or answers that lack the required a=fingerprint attribute, while incorrectly rejecting those that include it. An attacker with the ability to intercept and modify WebRTC signaling messages could exploit this to bypass the SDP-level DTLS certificate fingerprint binding, weakening defenses against man-in-the-middle attacks on media streams.

CVSS3: 3.7
redhat
около 1 месяца назад

A logic vulnerability was found in GStreamer's webrtcbin component. The _check_sdp_crypto() function contains an inverted boolean condition that causes it to accept remote SDP offers or answers that lack the required a=fingerprint attribute, while incorrectly rejecting those that include it. An attacker with the ability to intercept and modify WebRTC signaling messages could exploit this to bypass the SDP-level DTLS certificate fingerprint binding, weakening defenses against man-in-the-middle attacks on media streams.

CVSS3: 3.7
nvd
около 1 месяца назад

A logic vulnerability was found in GStreamer's webrtcbin component. The _check_sdp_crypto() function contains an inverted boolean condition that causes it to accept remote SDP offers or answers that lack the required a=fingerprint attribute, while incorrectly rejecting those that include it. An attacker with the ability to intercept and modify WebRTC signaling messages could exploit this to bypass the SDP-level DTLS certificate fingerprint binding, weakening defenses against man-in-the-middle attacks on media streams.

CVSS3: 3.7
github
около 1 месяца назад

A logic vulnerability was found in GStreamer's webrtcbin component. The _check_sdp_crypto() function contains an inverted boolean condition that causes it to accept remote SDP offers or answers that lack the required a=fingerprint attribute, while incorrectly rejecting those that include it. An attacker with the ability to intercept and modify WebRTC signaling messages could exploit this to bypass the SDP-level DTLS certificate fingerprint binding, weakening defenses against man-in-the-middle attacks on media streams.

suse-cvrf
29 дней назад

Security update for gstreamer-plugins-bad

EPSS

Процентиль: 5%
0.0015
Низкий