Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-88914

Опубликовано: 10 сент. 2026
Источник: redhat
CVSS3: 4.4
EPSS Низкий

Описание

A flaw was found in GStreamer's gst-plugins-good isomp4 plugin. When processing a specially crafted MP4 or MOV file containing CEA-608 closed-caption data, an integer overflow in 32-bit unsigned arithmetic can bypass a bounds check in the caption parser. This leads to an out-of-bounds heap read of up to 244 bytes, which is then included in the downstream caption output. An attacker could exploit this by tricking a user into opening a malicious media file, potentially resulting in disclosure of adjacent heap memory or application crash.

Отчет

This vulnerability is rated as Moderate because exploitation requires a user to open a crafted MP4 or MOV file and the issue is limited to an out-of-bounds read of up to approximately 244 bytes of adjacent heap memory. Code execution is not possible from this read-only flaw. Red Hat product impact analysis is pending component mapping to determine which products ship the affected gst-plugins-good qtdemux CEA-608 caption parsing code path.

Меры по смягчению последствий

No mitigation is currently available that meets Red Hat Product Security's standards for usability, deployment, applicability, or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10gstreamer1-plugins-goodFix deferred
Red Hat Enterprise Linux 6gstreamer-plugins-goodFix deferred
Red Hat Enterprise Linux 7gstreamer1-plugins-goodFix deferred
Red Hat Enterprise Linux 7gstreamer-plugins-goodFix deferred
Red Hat Enterprise Linux 8gstreamer1-plugins-goodFix deferred
Red Hat Enterprise Linux 9gstreamer1-plugins-goodFix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-190
https://bugzilla.redhat.com/show_bug.cgi?id=2531416gstreamer1-plugins-good: gstreamer: integer overflow and out-of-bounds read in qtdemux CEA-608 closed-caption parser

EPSS

Процентиль: 2%
0.00123
Низкий

4.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.4
ubuntu
2 дня назад

A flaw was found in GStreamer's gst-plugins-good isomp4 plugin. When processing a specially crafted MP4 or MOV file containing CEA-608 closed-caption data, an integer overflow in 32-bit unsigned arithmetic can bypass a bounds check in the caption parser. This leads to an out-of-bounds heap read of up to 244 bytes, which is then included in the downstream caption output. An attacker could exploit this by tricking a user into opening a malicious media file, potentially resulting in disclosure of adjacent heap memory or application crash.

CVSS3: 4.4
nvd
5 дней назад

A flaw was found in GStreamer's gst-plugins-good isomp4 plugin. When processing a specially crafted MP4 or MOV file containing CEA-608 closed-caption data, an integer overflow in 32-bit unsigned arithmetic can bypass a bounds check in the caption parser. This leads to an out-of-bounds heap read of up to 244 bytes, which is then included in the downstream caption output. An attacker could exploit this by tricking a user into opening a malicious media file, potentially resulting in disclosure of adjacent heap memory or application crash.

CVSS3: 4.4
debian
5 дней назад

A flaw was found in GStreamer's gst-plugins-good isomp4 plugin. When p ...

CVSS3: 4.4
github
5 дней назад

A flaw was found in GStreamer's gst-plugins-good isomp4 plugin. When processing a specially crafted MP4 or MOV file containing CEA-608 closed-caption data, an integer overflow in 32-bit unsigned arithmetic can bypass a bounds check in the caption parser. This leads to an out-of-bounds heap read of up to 244 bytes, which is then included in the downstream caption output. An attacker could exploit this by tricking a user into opening a malicious media file, potentially resulting in disclosure of adjacent heap memory or application crash.

EPSS

Процентиль: 2%
0.00123
Низкий

4.4 Medium

CVSS3