Skip to main content

Threats Tagged 'cve-2026-14935'

View all threats tagged with 'cve-2026-14935'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cve-2026-14935

Threats Tagged 'cve-2026-14935'

Click on any threat for detailed analysis and mitigation recommendations

0

Multiple security vulnerabilities have been identified and fixed in the gstreamer-plugins-bad component. These include out-of-bounds reads and writes, heap and stack buffer overflows, and improper validation issues affecting various parsers such as H.264, H.265, H.266, WebRTC, IPv4/TCP headers, and DTLS handshake processing. The issues could lead to memory corruption or crashes. No CVSS score is provided, but the severity is assessed as high due to the nature of the vulnerabilities.

Join the discussion

A logic vulnerability was found in GStreamer's webrtcbin component. The _check_sdp_crypto() function contains an inverted boolean condition that causes it to accept remote SDP offers or answers that lack the required a=fingerprint attribute, while incorrectly rejecting those that include it. An attacker with the ability to intercept and modify WebRTC signaling messages could exploit this to bypass the SDP-level DTLS certificate fingerprint binding, weakening defenses against man-in-the-middle attacks on media streams.

Join the discussion

Showing 1 to 2 of 2 results

Filters:Tag: cve-2026-14935
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses