Threats Tagged 'cve-2026-2921'
View all threats tagged with 'cve-2026-2921'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-2921'
Click on any threat for detailed analysis and mitigation recommendations
Multiple security vulnerabilities have been identified in various GStreamer plugin packages used in Red Hat Enterprise Linux 9 and related distributions. These vulnerabilities include arbitrary code execution and remote code execution via heap-based buffer overflows, integer overflows, and out-of-bounds writes in components handling ASF, JPEG, AVI, RTP, RealMedia, and DVB subtitle media formats. The issues affect the gstreamer1-plugins-bad-free, gstreamer1-plugins-base, gstreamer1-plugins-good, and gstreamer1-plugins-ugly-free packages. Red Hat has released security updates addressing these vulnerabilities. Users of affected Red Hat Enterprise Linux 9 variants and CodeReady Linux Builder should apply the updates as per the vendor advisory. Join the discussion | GCVE Database | 05/19/2026, 18:19:57 UTC Added: 06/25/2026, 21:46:45 UTC |
0 Multiple remote code execution vulnerabilities have been identified in GStreamer plugins, including heap-based buffer overflows and integer overflow issues affecting JPEG parsing, RTP depayloading, and AVI file handling. These vulnerabilities affect Red Hat Enterprise Linux 9.4 Extended Update Support and related packages. Red Hat has issued an important security advisory with updates to address these issues. Join the discussion | GCVE Database | 04/20/2026, 04:13:34 UTC Added: 06/25/2026, 21:46:37 UTC |
Multiple security vulnerabilities have been identified in GStreamer plugins included in Red Hat Enterprise Linux 10.0 Extended Update Support. These vulnerabilities include arbitrary code execution and remote code execution via heap-based buffer overflows, integer overflows, and out-of-bounds writes in various media file parsers and demuxers such as ASF, JPEG, AVI, RealMedia, RTP, and DVB subtitles. Red Hat has issued an important security advisory (RHSA-2026:8854) addressing these issues with updated packages. The vulnerabilities affect several GStreamer plugin packages: bad-free, base, good, and ugly-free. The advisory provides updated packages for multiple architectures and product variants. The severity is rated as high by the source. Patch availability is confirmed through the advisory with instructions for applying updates. Join the discussion | GCVE Database | 04/20/2026, 02:58:59 UTC Added: 06/25/2026, 21:46:37 UTC |
0 Multiple security vulnerabilities have been identified in the GStreamer streaming media framework, specifically in the gstreamer-plugins-base and gstreamer-plugins-good packages used in Red Hat Enterprise Linux 7 Extended Lifecycle Support. These include remote code execution via heap-based buffer overflow and out-of-bounds write in the rtpqdm2depay plugin, as well as arbitrary code execution through an integer overflow in AVI file handling. Red Hat has issued an important security advisory with updates addressing these issues. Join the discussion | GCVE Database | 04/13/2026, 11:16:58 UTC Added: 06/25/2026, 21:46:38 UTC |
0 Multiple security vulnerabilities have been identified in GStreamer plugins (gstreamer1-plugins-bad-free, gstreamer1-plugins-base, and gstreamer1-plugins-good) affecting Red Hat Enterprise Linux 8.8. These include heap-based buffer overflows and integer overflows that can lead to remote code execution. The issues affect components handling JPEG parsing, RTP QDM2 depayloading, and AVI file handling. Red Hat has issued an important security update addressing these vulnerabilities. Join the discussion | GCVE Database | 04/13/2026, 02:31:31 UTC Added: 06/25/2026, 21:46:38 UTC |
0 Multiple security vulnerabilities have been identified in GStreamer plugins (gstreamer1-plugins-bad-free, gstreamer1-plugins-base, and gstreamer1-plugins-good) affecting Red Hat Enterprise Linux 8. These include arbitrary code execution and remote code execution via heap-based buffer overflows, integer overflows, and out-of-bounds writes in various media file parsers and handlers such as ASF, JPEG, AVI, RTP, and DVB subtitles. Red Hat has issued an important security advisory with updates to address these issues. Join the discussion | GCVE Database | 04/07/2026, 08:25:32 UTC Added: 06/25/2026, 21:46:39 UTC |
Multiple security vulnerabilities have been identified in GStreamer plugins packages including gstreamer1-plugins-bad-free, base, good, and ugly-free used in Red Hat Enterprise Linux 9. These vulnerabilities include arbitrary code execution and remote code execution via heap-based buffer overflows, integer overflows, and out-of-bounds writes in various media file parsers and demuxers such as ASF, JPEG, AVI, RealMedia, RTP, and DVB subtitles. Red Hat has issued an important security advisory with updates to address these issues. Join the discussion | GCVE Database | 03/31/2026, 19:50:01 UTC Added: 06/25/2026, 21:46:40 UTC |
Multiple security vulnerabilities affecting GStreamer plugins in Red Hat Enterprise Linux 10 have been addressed. These include several remote code execution issues caused by heap-based buffer overflows, out-of-bounds writes, and integer overflows in various media file parsers and demuxers. The vulnerabilities impact the gstreamer1-plugins-bad-free, gstreamer1-plugins-base, gstreamer1-plugins-good, and gstreamer1-plugins-ugly-free packages. Red Hat has released security updates to fix these issues in affected versions of Red Hat Enterprise Linux 10 and related CodeReady Linux Builder packages. Join the discussion | GCVE Database | 03/31/2026, 13:11:45 UTC Added: 06/25/2026, 21:46:40 UTC |
0 Multiple remote code execution vulnerabilities have been identified in the GStreamer multimedia framework, specifically in the gstreamer-plugins-ugly package. These include heap-based buffer overflow and out-of-bounds write flaws in various demuxers such as ASF and RealMedia. The vulnerabilities allow for potential arbitrary code execution when processing crafted media files. Red Hat has issued security updates addressing these issues in Red Hat Enterprise Linux 10 and related packages. Join the discussion | GCVE Database | 03/19/2026, 13:48:14 UTC Added: 06/25/2026, 21:46:45 UTC |
0 This update for gstreamer-plugins-ugly fixes the following issues: - CVE-2026-2920: GStreamer ASF Demuxer Heap-based Buffer Overflow Remote Code Execution Vulnerability (bsc#1259367). - CVE-2026-2922: GStreamer RealMedia Demuxer Out-Of-Bounds Write Remote Code Execution Vulnerability (bsc#1259370). Join the discussion | GCVE Database | 03/19/2026, 13:48:14 UTC Added: 06/25/2026, 21:46:37 UTC |
Showing 1 to 10 of 10 results