gstreamer1-plugins-base-1.22.12-8.el9_8.2
エラータID: AXSA:2026-1897:03
GStreamer is a streaming media framework based on graphs of filters which operate on media data. The gstreamer1-plugins-base packages contain a collection of well-maintained base plug-ins.
Security Fix(es):
* gstreamer: GStreamer: Arbitrary code execution via OGG file parsing buffer overflow (CVE-2026-18297)
* gstreamer1-plugins-base: gstreamer: NULL/invalid-pointer dereference in gst_rtsp_message_parse_auth_credentials() when parsing a crafted Digest Authorization/WWW-Authenticate header (CVE-2026-85150)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
CVE-2026-18297
GStreamer OGG File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of OGG files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29584.
CVE-2026-85150
A NULL pointer dereference flaw was found in GStreamer's RTSP support library. The vulnerability occurs while parsing an Authorization or WWW-Authenticate header that uses Digest authentication. Specially crafted whitespace placement around a parameter's terminator can cause an internal length calculation to underflow, leading to a crash of the process parsing the header. On an RTSP server this can be triggered by a remote, unauthenticated attacker sending a single malformed request when the server has authentication enabled; the same flaw can also be triggered against an RTSP client by a malicious or compromised RTSP server. Successful exploitation results in a denial of service (application crash) and has no confirmed impact on confidentiality or integrity.
Update packages.
GStreamer OGG File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of OGG files. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-29584.
A NULL pointer dereference flaw was found in GStreamer's RTSP support library. The vulnerability occurs while parsing an Authorization or WWW-Authenticate header that uses Digest authentication. Specially crafted whitespace placement around a parameter's terminator can cause an internal length calculation to underflow, leading to a crash of the process parsing the header. On an RTSP server this can be triggered by a remote, unauthenticated attacker sending a single malformed request when the server has authentication enabled; the same flaw can also be triggered against an RTSP client by a malicious or compromised RTSP server. Successful exploitation results in a denial of service (application crash) and has no confirmed impact on confidentiality or integrity.
N/A
SRPMS
- gstreamer1-plugins-base-1.22.12-8.el9_8.2.src.rpm
MD5: 5f2f4f349252c18c6915c2282cf71a5e
SHA-256: 464c065372819d8ae8f76f36a87336724c47557eab1fcafe6a5b7e993425cbc9
Size: 2.30 MB
Asianux Server 9 for x86_64
- gstreamer1-plugins-base-1.22.12-8.el9_8.2.x86_64.rpm
MD5: 8b3fd0f7e51bed48f69bbe859cacbe89
SHA-256: ea60fce495fdea821be6600dfca84d514a1d76adc852fd47d3b0ca8182e1fa90
Size: 2.23 MB - gstreamer1-plugins-base-devel-1.22.12-8.el9_8.2.x86_64.rpm
MD5: 6d45cff389ef95126f6cb10a6bb28ecc
SHA-256: 5da7eca54e2f6f1f5c9d55f3b5f48341cbb500a8cd12f35f8a430a7645ae7b26
Size: 523.19 kB - gstreamer1-plugins-base-tools-1.22.12-8.el9_8.2.x86_64.rpm
MD5: bfec1d6a1ca571bbd20db3a87bf820cf
SHA-256: 2055421bf6e8114a3f39898414dd2c4c9ed860e16319a13964d3a809546b403b
Size: 45.07 kB