Количество 47
Количество 47
SUSE-SU-2026:3299-1
Security update for gstreamer-plugins-bad
openSUSE-SU-2026:21204-1
Security update for gstreamer-plugins-bad
SUSE-SU-2026:2744-1
Security update for gstreamer-plugins-bad
SUSE-SU-2026:2743-1
Security update for gstreamer-plugins-bad
ROS-20260922-80-0014
Уязвимость gstreamer1-plugins-bad-freeworld
ROS-20260922-80-0013
Уязвимость gstreamer1-plugins-bad-free
GHSA-33x5-f9c4-3q24
An out-of-bounds read vulnerability was found in the VA JPEG decoder in GStreamer's gst-plugins-bad. The JPEG parser reads a segment length value from the bitstream without validating it against available data. A remote attacker could trick a user into opening a specially crafted JPEG file, causing downstream parsing to read beyond the provided input buffer, leading to a crash or potential information disclosure.
SUSE-SU-2026:3133-1
Security update for gstreamer-plugins-bad
SUSE-SU-2026:3125-1
Security update for gstreamer-plugins-bad
SUSE-SU-2026:3058-1
Security update for gstreamer-plugins-bad
openSUSE-SU-2026:21370-1
Security update for gstreamer-plugins-bad
CVE-2026-52722
A signed integer overflow vulnerability was found in GStreamer's VMnc decoder. A crafted VMnc stream with large cursor dimensions can overflow signed integer payload-size arithmetic, bypassing a length check and leading to out-of-bounds reads. A remote attacker could trick a user into opening a specially crafted VMnc file, potentially causing a crash or information disclosure.
CVE-2026-52722
A signed integer overflow vulnerability was found in GStreamer's VMnc decoder. A crafted VMnc stream with large cursor dimensions can overflow signed integer payload-size arithmetic, bypassing a length check and leading to out-of-bounds reads. A remote attacker could trick a user into opening a specially crafted VMnc file, potentially causing a crash or information disclosure.
CVE-2026-52722
A signed integer overflow vulnerability was found in GStreamer's VMnc decoder. A crafted VMnc stream with large cursor dimensions can overflow signed integer payload-size arithmetic, bypassing a length check and leading to out-of-bounds reads. A remote attacker could trick a user into opening a specially crafted VMnc file, potentially causing a crash or information disclosure.
CVE-2026-52722
A signed integer overflow vulnerability was found in GStreamer's VMnc ...
CVE-2026-52720
A heap buffer overflow vulnerability was found in GStreamer's librfb (RFB/VNC client). The rectangle bounds check incorrectly validates area rather than individual dimensions, allowing a malicious VNC server to send a rectangle that extends beyond the framebuffer. A remote attacker could set up a malicious VNC server and trick a user into connecting, resulting in an out-of-bounds heap write that could lead to code execution or a crash.
CVE-2026-52720
A heap buffer overflow vulnerability was found in GStreamer's librfb (RFB/VNC client). The rectangle bounds check incorrectly validates area rather than individual dimensions, allowing a malicious VNC server to send a rectangle that extends beyond the framebuffer. A remote attacker could set up a malicious VNC server and trick a user into connecting, resulting in an out-of-bounds heap write that could lead to code execution or a crash.
CVE-2026-52720
A heap buffer overflow vulnerability was found in GStreamer's librfb (RFB/VNC client). The rectangle bounds check incorrectly validates area rather than individual dimensions, allowing a malicious VNC server to send a rectangle that extends beyond the framebuffer. A remote attacker could set up a malicious VNC server and trick a user into connecting, resulting in an out-of-bounds heap write that could lead to code execution or a crash.
CVE-2026-52720
A heap buffer overflow vulnerability was found in GStreamer's librfb ( ...
ROS-20260922-80-0011
Уязвимость gstreamer1-plugins-bad-freeworld
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
SUSE-SU-2026:3299-1 Security update for gstreamer-plugins-bad | около 2 месяцев назад | |||
openSUSE-SU-2026:21204-1 Security update for gstreamer-plugins-bad | 0% Низкий | 3 месяца назад | ||
SUSE-SU-2026:2744-1 Security update for gstreamer-plugins-bad | 0% Низкий | 3 месяца назад | ||
SUSE-SU-2026:2743-1 Security update for gstreamer-plugins-bad | 0% Низкий | 3 месяца назад | ||
ROS-20260922-80-0014 Уязвимость gstreamer1-plugins-bad-freeworld | CVSS3: 7.1 | 0% Низкий | 3 дня назад | |
ROS-20260922-80-0013 Уязвимость gstreamer1-plugins-bad-free | CVSS3: 7.1 | 0% Низкий | 3 дня назад | |
GHSA-33x5-f9c4-3q24 An out-of-bounds read vulnerability was found in the VA JPEG decoder in GStreamer's gst-plugins-bad. The JPEG parser reads a segment length value from the bitstream without validating it against available data. A remote attacker could trick a user into opening a specially crafted JPEG file, causing downstream parsing to read beyond the provided input buffer, leading to a crash or potential information disclosure. | CVSS3: 7.1 | 0% Низкий | 3 месяца назад | |
SUSE-SU-2026:3133-1 Security update for gstreamer-plugins-bad | 2 месяца назад | |||
SUSE-SU-2026:3125-1 Security update for gstreamer-plugins-bad | 2 месяца назад | |||
SUSE-SU-2026:3058-1 Security update for gstreamer-plugins-bad | 2 месяца назад | |||
openSUSE-SU-2026:21370-1 Security update for gstreamer-plugins-bad | 2 месяца назад | |||
CVE-2026-52722 A signed integer overflow vulnerability was found in GStreamer's VMnc decoder. A crafted VMnc stream with large cursor dimensions can overflow signed integer payload-size arithmetic, bypassing a length check and leading to out-of-bounds reads. A remote attacker could trick a user into opening a specially crafted VMnc file, potentially causing a crash or information disclosure. | CVSS3: 7.1 | 0% Низкий | 3 месяца назад | |
CVE-2026-52722 A signed integer overflow vulnerability was found in GStreamer's VMnc decoder. A crafted VMnc stream with large cursor dimensions can overflow signed integer payload-size arithmetic, bypassing a length check and leading to out-of-bounds reads. A remote attacker could trick a user into opening a specially crafted VMnc file, potentially causing a crash or information disclosure. | CVSS3: 7.1 | 0% Низкий | 3 месяца назад | |
CVE-2026-52722 A signed integer overflow vulnerability was found in GStreamer's VMnc decoder. A crafted VMnc stream with large cursor dimensions can overflow signed integer payload-size arithmetic, bypassing a length check and leading to out-of-bounds reads. A remote attacker could trick a user into opening a specially crafted VMnc file, potentially causing a crash or information disclosure. | CVSS3: 7.1 | 0% Низкий | 3 месяца назад | |
CVE-2026-52722 A signed integer overflow vulnerability was found in GStreamer's VMnc ... | CVSS3: 7.1 | 0% Низкий | 3 месяца назад | |
CVE-2026-52720 A heap buffer overflow vulnerability was found in GStreamer's librfb (RFB/VNC client). The rectangle bounds check incorrectly validates area rather than individual dimensions, allowing a malicious VNC server to send a rectangle that extends beyond the framebuffer. A remote attacker could set up a malicious VNC server and trick a user into connecting, resulting in an out-of-bounds heap write that could lead to code execution or a crash. | CVSS3: 8.8 | 1% Низкий | 3 месяца назад | |
CVE-2026-52720 A heap buffer overflow vulnerability was found in GStreamer's librfb (RFB/VNC client). The rectangle bounds check incorrectly validates area rather than individual dimensions, allowing a malicious VNC server to send a rectangle that extends beyond the framebuffer. A remote attacker could set up a malicious VNC server and trick a user into connecting, resulting in an out-of-bounds heap write that could lead to code execution or a crash. | CVSS3: 8.8 | 1% Низкий | 3 месяца назад | |
CVE-2026-52720 A heap buffer overflow vulnerability was found in GStreamer's librfb (RFB/VNC client). The rectangle bounds check incorrectly validates area rather than individual dimensions, allowing a malicious VNC server to send a rectangle that extends beyond the framebuffer. A remote attacker could set up a malicious VNC server and trick a user into connecting, resulting in an out-of-bounds heap write that could lead to code execution or a crash. | CVSS3: 8.8 | 1% Низкий | 3 месяца назад | |
CVE-2026-52720 A heap buffer overflow vulnerability was found in GStreamer's librfb ( ... | CVSS3: 8.8 | 1% Низкий | 3 месяца назад | |
ROS-20260922-80-0011 Уязвимость gstreamer1-plugins-bad-freeworld | CVSS3: 8.8 | 1% Низкий | 3 дня назад |
Уязвимостей на страницу