Количество 13
Количество 13
CVE-2026-18296
GStreamer MRF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of MRF files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29608.
CVE-2026-18296
GStreamer MRF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of MRF files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29608.
CVE-2026-18296
GStreamer MRF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of MRF files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29608.
CVE-2026-18296
GStreamer MRF File Parsing Heap-based Buffer Overflow Remote Code Exec ...
ROS-20260922-80-0003
Уязвимость gstreamer1-plugins-good
ROS-20260922-73-0003
Уязвимость gstreamer1-plugins-good
GHSA-3h9q-557w-x4r6
GStreamer MRF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of MRF files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29608.
RLSA-2026:59133
Important: gstreamer1-plugins-good security update
ELSA-2026-59133
ELSA-2026-59133: gstreamer1-plugins-good security update (IMPORTANT)
RLSA-2026:59179
Important: gstreamer1-plugins-good security update
RLSA-2026:59152
Important: gstreamer1-plugins-good security update
ELSA-2026-59179
ELSA-2026-59179: gstreamer1-plugins-good security update (IMPORTANT)
ELSA-2026-59152
ELSA-2026-59152: gstreamer1-plugins-good security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-18296 GStreamer MRF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of MRF files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29608. | CVSS3: 7.8 | 0% Низкий | около 1 месяца назад | |
CVE-2026-18296 GStreamer MRF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of MRF files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29608. | CVSS3: 7.8 | 0% Низкий | около 1 месяца назад | |
CVE-2026-18296 GStreamer MRF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of MRF files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29608. | CVSS3: 7.8 | 0% Низкий | около 1 месяца назад | |
CVE-2026-18296 GStreamer MRF File Parsing Heap-based Buffer Overflow Remote Code Exec ... | CVSS3: 7.8 | 0% Низкий | около 1 месяца назад | |
ROS-20260922-80-0003 Уязвимость gstreamer1-plugins-good | CVSS2: 7.2 | 0% Низкий | 3 дня назад | |
ROS-20260922-73-0003 Уязвимость gstreamer1-plugins-good | CVSS2: 7.2 | 0% Низкий | 3 дня назад | |
GHSA-3h9q-557w-x4r6 GStreamer MRF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of MRF files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29608. | CVSS3: 7.8 | 0% Низкий | около 1 месяца назад | |
RLSA-2026:59133 Important: gstreamer1-plugins-good security update | около 1 месяца назад | |||
ELSA-2026-59133 ELSA-2026-59133: gstreamer1-plugins-good security update (IMPORTANT) | около 1 месяца назад | |||
RLSA-2026:59179 Important: gstreamer1-plugins-good security update | около 1 месяца назад | |||
RLSA-2026:59152 Important: gstreamer1-plugins-good security update | около 1 месяца назад | |||
ELSA-2026-59179 ELSA-2026-59179: gstreamer1-plugins-good security update (IMPORTANT) | около 1 месяца назад | |||
ELSA-2026-59152 ELSA-2026-59152: gstreamer1-plugins-good security update (IMPORTANT) | около 1 месяца назад |
Уязвимостей на страницу