Search CVE reports


Toggle filters

11 – 20 of 62 results


CVE-2026-39043

Medium priority

Some fixes available 2 of 6

Heap buffer overflow in Matroska demuxer

1 affected package

gst-plugins-good1.0

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-good1.0 Not affected Fixed Fixed Needs evaluation Needs evaluation
Show less packages

CVE-2026-53705

Medium priority

Some fixes available 3 of 7

A flaw was found in GStreamer's WavPack audio decoder in gst-plugins-good. When processing a specially crafted WavPack file, an integer overflow in the buffer size calculation (4 * block_samples * channels)...

1 affected package

gst-plugins-good1.0

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-good1.0 Fixed Fixed Fixed Needs evaluation Needs evaluation
Show less packages

CVE-2026-46470

Medium priority

Some fixes available 3 of 6

An issue was discovered in GStreamer gst-plugins-good before 1.28.2. When parsing MP4 audio tracks, the isomp4 plugin's qtdemux_audio_caps function does not sufficiently validate atom data before performing division operations,...

1 affected package

gst-plugins-good1.0

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-good1.0 Not affected Fixed Fixed Needs evaluation Needs evaluation
Show less packages

CVE-2026-46469

Medium priority

Some fixes available 3 of 6

An issue was discovered in GStreamer gst-plugins-good before 1.28.2. When parsing MP4 audio tracks, the isomp4 plugin's qtdemux_parse_trak function does not sufficiently validate atom data before performing division operations,...

1 affected package

gst-plugins-good1.0

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-good1.0 Not affected Fixed Fixed Needs evaluation Needs evaluation
Show less packages

CVE-2026-5056

Medium priority
Fixed

GStreamer qtdemux Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is...

1 affected package

gst-plugins-good1.0

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-good1.0 Not affected Not affected Not affected Not affected Not affected
Show less packages

CVE-2026-3085

Medium priority

Some fixes available 3 of 6

GStreamer rtpqdm2depay Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is...

1 affected package

gst-plugins-good1.0

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-good1.0 Not affected Fixed Fixed Needs evaluation Needs evaluation
Show less packages

CVE-2026-3083

Medium priority

Some fixes available 3 of 6

GStreamer rtpqdm2depay Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required...

1 affected package

gst-plugins-good1.0

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-good1.0 Not affected Fixed Fixed Needs evaluation Needs evaluation
Show less packages

CVE-2025-47219

Medium priority

Some fixes available 6 of 7

In GStreamer through 1.26.1, the isomp4 plugin's qtdemux_parse_trak function may read past the end of a heap buffer while parsing an MP4 file, possibly leading to information disclosure.

1 affected package

gst-plugins-good1.0

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-good1.0 Fixed Fixed Fixed Fixed
Show less packages

CVE-2025-47183

Medium priority

Some fixes available 4 of 7

In GStreamer through 1.26.1, the isomp4 plugin's qtdemux_parse_tree function may read past the end of a heap buffer while parsing an MP4 file, leading to information disclosure.

1 affected package

gst-plugins-good1.0

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-good1.0 Fixed Fixed Ignored Ignored
Show less packages

CVE-2024-47834

Medium priority

Some fixes available 4 of 7

GStreamer is a library for constructing graphs of media-handling components. An Use-After-Free read vulnerability has been discovered affecting the processing of CodecPrivate elements in Matroska streams. In the...

2 affected packages

gst-plugins-good0.10, gst-plugins-good1.0

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gst-plugins-good0.10 Not in release Not in release Not in release Not in release
gst-plugins-good1.0 Not affected Fixed Fixed Fixed Needs evaluation
Show less packages