Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 9

Количество 9

github логотип

GHSA-gqxr-5q6c-5cqh

около 1 месяца назад

GStreamer OGG File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of OGG files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29584.

CVSS3: 7.8
EPSS: Низкий
ubuntu логотип

CVE-2026-18297

около 1 месяца назад

(GStreamer OGG File Parsing Stack-based Buffer Overflow Remote Code Exe ...)

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2026-18297

около 1 месяца назад

GStreamer OGG File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of OGG files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29584.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2026-18297

около 1 месяца назад

GStreamer OGG File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of OGG files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29584.

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2026-18297

около 1 месяца назад

GStreamer OGG File Parsing Stack-based Buffer Overflow Remote Code Exe ...

CVSS3: 7.8
EPSS: Низкий
rocky логотип

RLSA-2026:59487

28 дней назад

Important: gstreamer1-plugins-base security update

EPSS: Низкий
rocky логотип

RLSA-2026:59097

29 дней назад

Important: gstreamer1-plugins-base security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-59487

29 дней назад

ELSA-2026-59487: gstreamer1-plugins-base security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-59097

около 1 месяца назад

ELSA-2026-59097: gstreamer1-plugins-base security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-gqxr-5q6c-5cqh

GStreamer OGG File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of OGG files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29584.

CVSS3: 7.8
0%
Низкий
около 1 месяца назад
ubuntu логотип
CVE-2026-18297

(GStreamer OGG File Parsing Stack-based Buffer Overflow Remote Code Exe ...)

CVSS3: 7.8
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2026-18297

GStreamer OGG File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of OGG files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29584.

CVSS3: 7.8
0%
Низкий
около 1 месяца назад
nvd логотип
CVE-2026-18297

GStreamer OGG File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of OGG files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29584.

CVSS3: 7.8
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2026-18297

GStreamer OGG File Parsing Stack-based Buffer Overflow Remote Code Exe ...

CVSS3: 7.8
0%
Низкий
около 1 месяца назад
rocky логотип
RLSA-2026:59487

Important: gstreamer1-plugins-base security update

0%
Низкий
28 дней назад
rocky логотип
RLSA-2026:59097

Important: gstreamer1-plugins-base security update

0%
Низкий
29 дней назад
oracle-oval логотип
ELSA-2026-59487

ELSA-2026-59487: gstreamer1-plugins-base security update (IMPORTANT)

0%
Низкий
29 дней назад
oracle-oval логотип
ELSA-2026-59097

ELSA-2026-59097: gstreamer1-plugins-base security update (IMPORTANT)

0%
Низкий
около 1 месяца назад

Уязвимостей на страницу