Skip to main content

Threats Tagged 'cve-2026-2923'

View all threats tagged with 'cve-2026-2923'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cve-2026-2923

Threats Tagged 'cve-2026-2923'

Click on any threat for detailed analysis and mitigation recommendations

Multiple security vulnerabilities have been identified in various GStreamer plugin packages used in Red Hat Enterprise Linux 9 and related distributions. These vulnerabilities include arbitrary code execution and remote code execution via heap-based buffer overflows, integer overflows, and out-of-bounds writes in components handling ASF, JPEG, AVI, RTP, RealMedia, and DVB subtitle media formats. The issues affect the gstreamer1-plugins-bad-free, gstreamer1-plugins-base, gstreamer1-plugins-good, and gstreamer1-plugins-ugly-free packages. Red Hat has released security updates addressing these vulnerabilities. Users of affected Red Hat Enterprise Linux 9 variants and CodeReady Linux Builder should apply the updates as per the vendor advisory.

Join the discussion

Multiple security vulnerabilities have been identified in GStreamer plugins included in Red Hat Enterprise Linux 10.0 Extended Update Support. These vulnerabilities include arbitrary code execution and remote code execution via heap-based buffer overflows, integer overflows, and out-of-bounds writes in various media file parsers and demuxers such as ASF, JPEG, AVI, RealMedia, RTP, and DVB subtitles. Red Hat has issued an important security advisory (RHSA-2026:8854) addressing these issues with updated packages. The vulnerabilities affect several GStreamer plugin packages: bad-free, base, good, and ugly-free. The advisory provides updated packages for multiple architectures and product variants. The severity is rated as high by the source. Patch availability is confirmed through the advisory with instructions for applying updates.

Join the discussion

Multiple security vulnerabilities have been identified in GStreamer plugins (gstreamer1-plugins-bad-free, gstreamer1-plugins-base, and gstreamer1-plugins-good) affecting Red Hat Enterprise Linux 8. These include arbitrary code execution and remote code execution via heap-based buffer overflows, integer overflows, and out-of-bounds writes in various media file parsers and handlers such as ASF, JPEG, AVI, RTP, and DVB subtitles. Red Hat has issued an important security advisory with updates to address these issues.

Join the discussion

Multiple security vulnerabilities have been identified in GStreamer plugins packages including gstreamer1-plugins-bad-free, base, good, and ugly-free used in Red Hat Enterprise Linux 9. These vulnerabilities include arbitrary code execution and remote code execution via heap-based buffer overflows, integer overflows, and out-of-bounds writes in various media file parsers and demuxers such as ASF, JPEG, AVI, RealMedia, RTP, and DVB subtitles. Red Hat has issued an important security advisory with updates to address these issues.

Join the discussion

Multiple security vulnerabilities affecting GStreamer plugins in Red Hat Enterprise Linux 10 have been addressed. These include several remote code execution issues caused by heap-based buffer overflows, out-of-bounds writes, and integer overflows in various media file parsers and demuxers. The vulnerabilities impact the gstreamer1-plugins-bad-free, gstreamer1-plugins-base, gstreamer1-plugins-good, and gstreamer1-plugins-ugly-free packages. Red Hat has released security updates to fix these issues in affected versions of Red Hat Enterprise Linux 10 and related CodeReady Linux Builder packages.

Join the discussion
0

Multiple remote code execution vulnerabilities have been identified in the GStreamer multimedia framework, specifically in the gstreamer-plugins-ugly package. These include heap-based buffer overflow and out-of-bounds write flaws in various demuxers such as ASF and RealMedia. The vulnerabilities allow for potential arbitrary code execution when processing crafted media files. Red Hat has issued security updates addressing these issues in Red Hat Enterprise Linux 10 and related packages.

Join the discussion
0

This update for gstreamer-plugins-ugly fixes the following issues: - CVE-2026-2920: GStreamer ASF Demuxer Heap-based Buffer Overflow Remote Code Execution Vulnerability (bsc#1259367). - CVE-2026-2922: GStreamer RealMedia Demuxer Out-Of-Bounds Write Remote Code Execution Vulnerability (bsc#1259370).

Join the discussion

Showing 1 to 7 of 7 results

Filters:Tag: cve-2026-2923
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses