Количество 13
Количество 13
CVE-2026-18298
GStreamer PNG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PNG files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29581.
CVE-2026-18298
GStreamer PNG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PNG files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29581.
CVE-2026-18298
GStreamer PNG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PNG files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29581.
CVE-2026-18298
GStreamer PNG File Parsing Heap-based Buffer Overflow Remote Code Exec ...
ROS-20260922-80-0001
Уязвимость gstreamer1-plugins-good
ROS-20260922-73-0001
Уязвимость gstreamer1-plugins-good
GHSA-5gr2-2c8f-ph26
GStreamer PNG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PNG files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29581.
RLSA-2026:59133
Important: gstreamer1-plugins-good security update
ELSA-2026-59133
ELSA-2026-59133: gstreamer1-plugins-good security update (IMPORTANT)
RLSA-2026:59179
Important: gstreamer1-plugins-good security update
RLSA-2026:59152
Important: gstreamer1-plugins-good security update
ELSA-2026-59179
ELSA-2026-59179: gstreamer1-plugins-good security update (IMPORTANT)
ELSA-2026-59152
ELSA-2026-59152: gstreamer1-plugins-good security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-18298 GStreamer PNG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PNG files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29581. | CVSS3: 7.8 | 0% Низкий | около 1 месяца назад | |
CVE-2026-18298 GStreamer PNG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PNG files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29581. | CVSS3: 7.8 | 0% Низкий | около 1 месяца назад | |
CVE-2026-18298 GStreamer PNG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PNG files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29581. | CVSS3: 7.8 | 0% Низкий | около 1 месяца назад | |
CVE-2026-18298 GStreamer PNG File Parsing Heap-based Buffer Overflow Remote Code Exec ... | CVSS3: 7.8 | 0% Низкий | около 1 месяца назад | |
ROS-20260922-80-0001 Уязвимость gstreamer1-plugins-good | CVSS2: 7.2 | 0% Низкий | 3 дня назад | |
ROS-20260922-73-0001 Уязвимость gstreamer1-plugins-good | CVSS2: 7.2 | 0% Низкий | 3 дня назад | |
GHSA-5gr2-2c8f-ph26 GStreamer PNG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PNG files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29581. | CVSS3: 7.8 | 0% Низкий | около 1 месяца назад | |
RLSA-2026:59133 Important: gstreamer1-plugins-good security update | около 1 месяца назад | |||
ELSA-2026-59133 ELSA-2026-59133: gstreamer1-plugins-good security update (IMPORTANT) | около 1 месяца назад | |||
RLSA-2026:59179 Important: gstreamer1-plugins-good security update | около 1 месяца назад | |||
RLSA-2026:59152 Important: gstreamer1-plugins-good security update | около 1 месяца назад | |||
ELSA-2026-59179 ELSA-2026-59179: gstreamer1-plugins-good security update (IMPORTANT) | около 1 месяца назад | |||
ELSA-2026-59152 ELSA-2026-59152: gstreamer1-plugins-good security update (IMPORTANT) | около 1 месяца назад |
Уязвимостей на страницу