Количество 31
Количество 31
RLSA-2026:56966
Moderate: gstreamer1-plugins-good security update
ELSA-2026-56966
ELSA-2026-56966: gstreamer1-plugins-good security update (MODERATE)
RLSA-2026:55436
Moderate: gstreamer1-plugins-good security update
RLSA-2026:55434
Moderate: gstreamer1-plugins-good security update
ELSA-2026-55436
ELSA-2026-55436: gstreamer1-plugins-good security update (MODERATE)
ELSA-2026-55434
ELSA-2026-55434: gstreamer1-plugins-good security update (MODERATE)
CVE-2026-18649
A flaw was found in the GStreamer gst-plugins-good package. The rtph264depay and rtph265depay RTP depayloader elements do not enforce a maximum size limit on the reassembly buffer used during fragmented RTP packet processing. A remote, unauthenticated attacker can send a continuous stream of RTP fragments without ever transmitting an end-of-fragment marker, causing the reassembly buffer to grow without bound until process memory is exhausted. This results in a denial of service through process termination.
CVE-2026-18649
A flaw was found in the GStreamer gst-plugins-good package. The rtph264depay and rtph265depay RTP depayloader elements do not enforce a maximum size limit on the reassembly buffer used during fragmented RTP packet processing. A remote, unauthenticated attacker can send a continuous stream of RTP fragments without ever transmitting an end-of-fragment marker, causing the reassembly buffer to grow without bound until process memory is exhausted. This results in a denial of service through process termination.
CVE-2026-18649
A flaw was found in the GStreamer gst-plugins-good package. The rtph264depay and rtph265depay RTP depayloader elements do not enforce a maximum size limit on the reassembly buffer used during fragmented RTP packet processing. A remote, unauthenticated attacker can send a continuous stream of RTP fragments without ever transmitting an end-of-fragment marker, causing the reassembly buffer to grow without bound until process memory is exhausted. This results in a denial of service through process termination.
CVE-2026-18649
A flaw was found in the GStreamer gst-plugins-good package. The rtph26 ...
ROS-20260922-80-0007
Уязвимость gstreamer1-plugins-good
ROS-20260922-73-0007
Уязвимость gstreamer1-plugins-good
RLSA-2026:53452
Moderate: gstreamer1-plugins-good security update
RLSA-2026:53451
Moderate: gstreamer1-plugins-good security update
GHSA-wr93-5xph-995g
A flaw was found in the GStreamer gst-plugins-good package. The rtph264depay and rtph265depay RTP depayloader elements do not enforce a maximum size limit on the reassembly buffer used during fragmented RTP packet processing. A remote, unauthenticated attacker can send a continuous stream of RTP fragments without ever transmitting an end-of-fragment marker, causing the reassembly buffer to grow without bound until process memory is exhausted. This results in a denial of service through process termination.
ELSA-2026-53452
ELSA-2026-53452: gstreamer1-plugins-good security update (MODERATE)
ELSA-2026-53451
ELSA-2026-53451: gstreamer1-plugins-good security update (MODERATE)
CVE-2026-73434
A flaw was found in GStreamer gst-plugins-good (avidemux). In gst_avi_demux_riff_parse_vprp(), the number of available gst_riff_vprp_video_field_desc entries is calculated by dividing the remaining buffer size by the attacker-controlled vprp->fields value, rather than by sizeof(gst_riff_vprp_video_field_desc). This can cause the parser to treat more field descriptors as available than fit in the input buffer, resulting in out-of-bounds reads. Processing a crafted AVI via playbin/decodebin can crash the application (denial of service). Fixed upstream in gst-plugins-good 1.28.6 (GStreamer-SA-2026-0072).
CVE-2026-73434
A flaw was found in GStreamer gst-plugins-good (avidemux). In gst_avi_demux_riff_parse_vprp(), the number of available gst_riff_vprp_video_field_desc entries is calculated by dividing the remaining buffer size by the attacker-controlled vprp->fields value, rather than by sizeof(gst_riff_vprp_video_field_desc). This can cause the parser to treat more field descriptors as available than fit in the input buffer, resulting in out-of-bounds reads. Processing a crafted AVI via playbin/decodebin can crash the application (denial of service). Fixed upstream in gst-plugins-good 1.28.6 (GStreamer-SA-2026-0072).
CVE-2026-73434
A flaw was found in GStreamer gst-plugins-good (avidemux). In gst_avi_demux_riff_parse_vprp(), the number of available gst_riff_vprp_video_field_desc entries is calculated by dividing the remaining buffer size by the attacker-controlled vprp->fields value, rather than by sizeof(gst_riff_vprp_video_field_desc). This can cause the parser to treat more field descriptors as available than fit in the input buffer, resulting in out-of-bounds reads. Processing a crafted AVI via playbin/decodebin can crash the application (denial of service). Fixed upstream in gst-plugins-good 1.28.6 (GStreamer-SA-2026-0072).
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
RLSA-2026:56966 Moderate: gstreamer1-plugins-good security update | около 1 месяца назад | |||
ELSA-2026-56966 ELSA-2026-56966: gstreamer1-plugins-good security update (MODERATE) | около 1 месяца назад | |||
RLSA-2026:55436 Moderate: gstreamer1-plugins-good security update | около 1 месяца назад | |||
RLSA-2026:55434 Moderate: gstreamer1-plugins-good security update | около 1 месяца назад | |||
ELSA-2026-55436 ELSA-2026-55436: gstreamer1-plugins-good security update (MODERATE) | около 1 месяца назад | |||
ELSA-2026-55434 ELSA-2026-55434: gstreamer1-plugins-good security update (MODERATE) | около 1 месяца назад | |||
CVE-2026-18649 A flaw was found in the GStreamer gst-plugins-good package. The rtph264depay and rtph265depay RTP depayloader elements do not enforce a maximum size limit on the reassembly buffer used during fragmented RTP packet processing. A remote, unauthenticated attacker can send a continuous stream of RTP fragments without ever transmitting an end-of-fragment marker, causing the reassembly buffer to grow without bound until process memory is exhausted. This results in a denial of service through process termination. | CVSS3: 7.5 | 1% Низкий | около 2 месяцев назад | |
CVE-2026-18649 A flaw was found in the GStreamer gst-plugins-good package. The rtph264depay and rtph265depay RTP depayloader elements do not enforce a maximum size limit on the reassembly buffer used during fragmented RTP packet processing. A remote, unauthenticated attacker can send a continuous stream of RTP fragments without ever transmitting an end-of-fragment marker, causing the reassembly buffer to grow without bound until process memory is exhausted. This results in a denial of service through process termination. | CVSS3: 7.5 | 1% Низкий | около 2 месяцев назад | |
CVE-2026-18649 A flaw was found in the GStreamer gst-plugins-good package. The rtph264depay and rtph265depay RTP depayloader elements do not enforce a maximum size limit on the reassembly buffer used during fragmented RTP packet processing. A remote, unauthenticated attacker can send a continuous stream of RTP fragments without ever transmitting an end-of-fragment marker, causing the reassembly buffer to grow without bound until process memory is exhausted. This results in a denial of service through process termination. | CVSS3: 7.5 | 1% Низкий | около 2 месяцев назад | |
CVE-2026-18649 A flaw was found in the GStreamer gst-plugins-good package. The rtph26 ... | CVSS3: 7.5 | 1% Низкий | около 2 месяцев назад | |
ROS-20260922-80-0007 Уязвимость gstreamer1-plugins-good | CVSS3: 7.5 | 1% Низкий | 3 дня назад | |
ROS-20260922-73-0007 Уязвимость gstreamer1-plugins-good | CVSS3: 7.5 | 1% Низкий | 3 дня назад | |
RLSA-2026:53452 Moderate: gstreamer1-plugins-good security update | 1% Низкий | около 1 месяца назад | ||
RLSA-2026:53451 Moderate: gstreamer1-plugins-good security update | 1% Низкий | около 1 месяца назад | ||
GHSA-wr93-5xph-995g A flaw was found in the GStreamer gst-plugins-good package. The rtph264depay and rtph265depay RTP depayloader elements do not enforce a maximum size limit on the reassembly buffer used during fragmented RTP packet processing. A remote, unauthenticated attacker can send a continuous stream of RTP fragments without ever transmitting an end-of-fragment marker, causing the reassembly buffer to grow without bound until process memory is exhausted. This results in a denial of service through process termination. | CVSS3: 7.5 | 1% Низкий | около 2 месяцев назад | |
ELSA-2026-53452 ELSA-2026-53452: gstreamer1-plugins-good security update (MODERATE) | 1% Низкий | около 1 месяца назад | ||
ELSA-2026-53451 ELSA-2026-53451: gstreamer1-plugins-good security update (MODERATE) | 1% Низкий | около 1 месяца назад | ||
CVE-2026-73434 A flaw was found in GStreamer gst-plugins-good (avidemux). In gst_avi_demux_riff_parse_vprp(), the number of available gst_riff_vprp_video_field_desc entries is calculated by dividing the remaining buffer size by the attacker-controlled vprp->fields value, rather than by sizeof(gst_riff_vprp_video_field_desc). This can cause the parser to treat more field descriptors as available than fit in the input buffer, resulting in out-of-bounds reads. Processing a crafted AVI via playbin/decodebin can crash the application (denial of service). Fixed upstream in gst-plugins-good 1.28.6 (GStreamer-SA-2026-0072). | CVSS3: 6.1 | 0% Низкий | около 1 месяца назад | |
CVE-2026-73434 A flaw was found in GStreamer gst-plugins-good (avidemux). In gst_avi_demux_riff_parse_vprp(), the number of available gst_riff_vprp_video_field_desc entries is calculated by dividing the remaining buffer size by the attacker-controlled vprp->fields value, rather than by sizeof(gst_riff_vprp_video_field_desc). This can cause the parser to treat more field descriptors as available than fit in the input buffer, resulting in out-of-bounds reads. Processing a crafted AVI via playbin/decodebin can crash the application (denial of service). Fixed upstream in gst-plugins-good 1.28.6 (GStreamer-SA-2026-0072). | CVSS3: 6.1 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-73434 A flaw was found in GStreamer gst-plugins-good (avidemux). In gst_avi_demux_riff_parse_vprp(), the number of available gst_riff_vprp_video_field_desc entries is calculated by dividing the remaining buffer size by the attacker-controlled vprp->fields value, rather than by sizeof(gst_riff_vprp_video_field_desc). This can cause the parser to treat more field descriptors as available than fit in the input buffer, resulting in out-of-bounds reads. Processing a crafted AVI via playbin/decodebin can crash the application (denial of service). Fixed upstream in gst-plugins-good 1.28.6 (GStreamer-SA-2026-0072). | CVSS3: 6.1 | 0% Низкий | около 1 месяца назад |
Уязвимостей на страницу