Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 13

Количество 13

ubuntu логотип

CVE-2026-12892

3 месяца назад

A flaw was found in GStreamer's gst-plugins-bad package. When processing a specially crafted H.264 video file containing malformed MVC or SVC extension slice NAL units, a 1-byte heap out-of-bounds read can occur during parsing. This happens when the parser attempts to check slice boundary information without first verifying that the NAL unit contains enough data beyond the extension header. An attacker could exploit this by tricking a user into opening a malicious H.264 video file, potentially causing the application to crash or leak a single byte of heap memory.

CVSS3: 4.4
EPSS: Низкий
redhat логотип

CVE-2026-12892

3 месяца назад

A flaw was found in GStreamer's gst-plugins-bad package. When processing a specially crafted H.264 video file containing malformed MVC or SVC extension slice NAL units, a 1-byte heap out-of-bounds read can occur during parsing. This happens when the parser attempts to check slice boundary information without first verifying that the NAL unit contains enough data beyond the extension header. An attacker could exploit this by tricking a user into opening a malicious H.264 video file, potentially causing the application to crash or leak a single byte of heap memory.

CVSS3: 4.4
EPSS: Низкий
nvd логотип

CVE-2026-12892

3 месяца назад

A flaw was found in GStreamer's gst-plugins-bad package. When processing a specially crafted H.264 video file containing malformed MVC or SVC extension slice NAL units, a 1-byte heap out-of-bounds read can occur during parsing. This happens when the parser attempts to check slice boundary information without first verifying that the NAL unit contains enough data beyond the extension header. An attacker could exploit this by tricking a user into opening a malicious H.264 video file, potentially causing the application to crash or leak a single byte of heap memory.

CVSS3: 4.4
EPSS: Низкий
debian логотип

CVE-2026-12892

3 месяца назад

A flaw was found in GStreamer's gst-plugins-bad package. When processi ...

CVSS3: 4.4
EPSS: Низкий
redos логотип

ROS-20260922-80-0041

3 дня назад

Уязвимость gstreamer1-plugins-bad-freeworld

CVSS3: 4.4
EPSS: Низкий
redos логотип

ROS-20260922-80-0039

3 дня назад

Уязвимость gstreamer1-plugins-bad-free

CVSS3: 4.4
EPSS: Низкий
redos логотип

ROS-20260922-73-0027

3 дня назад

Уязвимость gstreamer1-plugins-bad-free

CVSS3: 4.4
EPSS: Низкий
github логотип

GHSA-mc62-3gf7-rphg

3 месяца назад

A flaw was found in GStreamer's gst-plugins-bad package. When processing a specially crafted H.264 video file containing malformed MVC or SVC extension slice NAL units, a 1-byte heap out-of-bounds read can occur during parsing. This happens when the parser attempts to check slice boundary information without first verifying that the NAL unit contains enough data beyond the extension header. An attacker could exploit this by tricking a user into opening a malicious H.264 video file, potentially causing the application to crash or leak a single byte of heap memory.

CVSS3: 4.4
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3299-1

около 2 месяцев назад

Security update for gstreamer-plugins-bad

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3133-1

2 месяца назад

Security update for gstreamer-plugins-bad

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3125-1

2 месяца назад

Security update for gstreamer-plugins-bad

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3058-1

2 месяца назад

Security update for gstreamer-plugins-bad

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21370-1

2 месяца назад

Security update for gstreamer-plugins-bad

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-12892

A flaw was found in GStreamer's gst-plugins-bad package. When processing a specially crafted H.264 video file containing malformed MVC or SVC extension slice NAL units, a 1-byte heap out-of-bounds read can occur during parsing. This happens when the parser attempts to check slice boundary information without first verifying that the NAL unit contains enough data beyond the extension header. An attacker could exploit this by tricking a user into opening a malicious H.264 video file, potentially causing the application to crash or leak a single byte of heap memory.

CVSS3: 4.4
0%
Низкий
3 месяца назад
redhat логотип
CVE-2026-12892

A flaw was found in GStreamer's gst-plugins-bad package. When processing a specially crafted H.264 video file containing malformed MVC or SVC extension slice NAL units, a 1-byte heap out-of-bounds read can occur during parsing. This happens when the parser attempts to check slice boundary information without first verifying that the NAL unit contains enough data beyond the extension header. An attacker could exploit this by tricking a user into opening a malicious H.264 video file, potentially causing the application to crash or leak a single byte of heap memory.

CVSS3: 4.4
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-12892

A flaw was found in GStreamer's gst-plugins-bad package. When processing a specially crafted H.264 video file containing malformed MVC or SVC extension slice NAL units, a 1-byte heap out-of-bounds read can occur during parsing. This happens when the parser attempts to check slice boundary information without first verifying that the NAL unit contains enough data beyond the extension header. An attacker could exploit this by tricking a user into opening a malicious H.264 video file, potentially causing the application to crash or leak a single byte of heap memory.

CVSS3: 4.4
0%
Низкий
3 месяца назад
debian логотип
CVE-2026-12892

A flaw was found in GStreamer's gst-plugins-bad package. When processi ...

CVSS3: 4.4
0%
Низкий
3 месяца назад
redos логотип
ROS-20260922-80-0041

Уязвимость gstreamer1-plugins-bad-freeworld

CVSS3: 4.4
0%
Низкий
3 дня назад
redos логотип
ROS-20260922-80-0039

Уязвимость gstreamer1-plugins-bad-free

CVSS3: 4.4
0%
Низкий
3 дня назад
redos логотип
ROS-20260922-73-0027

Уязвимость gstreamer1-plugins-bad-free

CVSS3: 4.4
0%
Низкий
3 дня назад
github логотип
GHSA-mc62-3gf7-rphg

A flaw was found in GStreamer's gst-plugins-bad package. When processing a specially crafted H.264 video file containing malformed MVC or SVC extension slice NAL units, a 1-byte heap out-of-bounds read can occur during parsing. This happens when the parser attempts to check slice boundary information without first verifying that the NAL unit contains enough data beyond the extension header. An attacker could exploit this by tricking a user into opening a malicious H.264 video file, potentially causing the application to crash or leak a single byte of heap memory.

CVSS3: 4.4
0%
Низкий
3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:3299-1

Security update for gstreamer-plugins-bad

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:3133-1

Security update for gstreamer-plugins-bad

2 месяца назад
suse-cvrf логотип
SUSE-SU-2026:3125-1

Security update for gstreamer-plugins-bad

2 месяца назад
suse-cvrf логотип
SUSE-SU-2026:3058-1

Security update for gstreamer-plugins-bad

2 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:21370-1

Security update for gstreamer-plugins-bad

2 месяца назад

Уязвимостей на страницу