Описание
ELSA-2026-55433: gstreamer1-plugins-bad-free security update (IMPORTANT)
[1.26.7-2.7]
- Fix ADPCM decoder input validation (CVE-2026-19387) Resolves: RHEL-235500
[1.26.7-2.5]
- Fix rfbsrc hextile and color read handling for non-32bpp pixel formats (CVE-2026-59691) Resolves: RHEL-193550
[1.26.7-2.4]
- Fix bytes/bits confusion in AV1 tile data size parsing (CVE-2026-52718) Resolves: RHEL-184391
[1.26.7-2.3]
- Fix for CVE-2026-52719 Resolves: RHEL-184406
[1.26.7-2.2]
- Fix integer overflows in VMnc decoder (CVE-2026-52722) Resolves: RHEL-184425
[1.26.7-2.1]
- Fix for CVE-2026-52720: validate framebuffer update rectangles in VNC source plugin's RFB decoder Resolves: RHEL-184462
Обновленные пакеты
Oracle Linux 10
Oracle Linux aarch64
gstreamer1-plugins-bad-free
1.26.7-2.el10_2.7
gstreamer1-plugins-bad-free-devel
1.26.7-2.el10_2.7
gstreamer1-plugins-bad-free-libs
1.26.7-2.el10_2.7
Oracle Linux x86_64
gstreamer1-plugins-bad-free
1.26.7-2.el10_2.7
gstreamer1-plugins-bad-free-devel
1.26.7-2.el10_2.7
gstreamer1-plugins-bad-free-libs
1.26.7-2.el10_2.7
Связанные CVE
Связанные уязвимости
A heap out-of-bounds write vulnerability was found in the GStreamer gst-plugins-bad adpcmdec element when decoding IMA/DVI ADPCM audio. Insufficient validation of the per-block sample count for multi-channel streams allows a crafted WAV file to cause writes beyond the allocated output buffer. This can lead to application crash, denial of service, memory corruption, or potentially arbitrary code execution when untrusted media is processed.
A heap out-of-bounds write vulnerability was found in the GStreamer gst-plugins-bad adpcmdec element when decoding IMA/DVI ADPCM audio. Insufficient validation of the per-block sample count for multi-channel streams allows a crafted WAV file to cause writes beyond the allocated output buffer. This can lead to application crash, denial of service, memory corruption, or potentially arbitrary code execution when untrusted media is processed.
A heap out-of-bounds write vulnerability was found in the GStreamer gst-plugins-bad adpcmdec element when decoding IMA/DVI ADPCM audio. Insufficient validation of the per-block sample count for multi-channel streams allows a crafted WAV file to cause writes beyond the allocated output buffer. This can lead to application crash, denial of service, memory corruption, or potentially arbitrary code execution when untrusted media is processed.
A heap out-of-bounds write vulnerability was found in the GStreamer gs ...