Search CVE reports


Toggle filters

1 – 10 of 24 results


CVE-2026-1940

Medium priority
Needs evaluation

An incomplete fix for CVE-2024-47778 allows an out-of-bounds read in gst_wavparse_adtl_chunk() function. The patch added a size validation check lsize + 8 > size, but it does not account for the GST_ROUND_UP_2(lsize) used in the...

1 affected package

gst-plugins-bad1.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-bad1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-3086

Medium priority
Needs evaluation

GStreamer H.266 Codec Parser Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is...

1 affected package

gst-plugins-bad1.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-bad1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-3084

Medium priority
Needs evaluation

GStreamer H.266 Codec Parser Integer Underflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is...

1 affected package

gst-plugins-bad1.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-bad1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-3082

Medium priority
Needs evaluation

GStreamer JPEG Parser Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is...

1 affected package

gst-plugins-bad1.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-bad1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-3081

Medium priority
Needs evaluation

GStreamer H.266 Codec Parser Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this...

1 affected package

gst-plugins-bad1.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-bad1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2026-2923

Medium priority
Needs evaluation

GStreamer DVB Subtitles Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is...

1 affected package

gst-plugins-bad1.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-bad1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-6663

Medium priority
Needs evaluation

GStreamer H266 Codec Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this...

1 affected package

gst-plugins-bad1.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-bad1.0 Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-3887

High priority

Some fixes available 5 of 8

GStreamer H265 Codec Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this...

1 affected package

gst-plugins-bad1.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-bad1.0 Fixed Fixed Fixed Vulnerable
Show less packages

CVE-2024-0444

Medium priority

Some fixes available 1 of 2

GStreamer AV1 Video Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this...

2 affected packages

gst-plugins-bad0.10, gst-plugins-bad1.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-bad0.10 Not in release Not in release Not in release Not in release
gst-plugins-bad1.0 Not affected Fixed Not affected Not affected
Show less packages

CVE-2023-50186

Medium priority

Some fixes available 1 of 3

GStreamer AV1 Video Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this...

2 affected packages

gst-plugins-bad0.10, gst-plugins-bad1.0

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-bad0.10 Not in release Not in release Not in release
gst-plugins-bad1.0 Not affected Fixed Not affected Not affected
Show less packages