{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3agstreamergstreamer/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:gstreamer:gstreamer:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":7.5,"id":"CVE-2026-85150"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["GStreamer RTSP support library"],"_cs_severities":["low"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":["GStreamer"],"content_html":"\u003cp\u003eA NULL pointer dereference vulnerability (CVE-2026-85150) exists in the GStreamer RTSP support library. The issue arises during the parsing of 'Authorization' or 'WWW-Authenticate' headers when using Digest authentication. Attackers can manipulate the placement of whitespace around a parameter's terminator, which causes an integer underflow during internal length calculations. This underflow leads to a memory access violation and a subsequent crash of the process parsing the malformed header. The vulnerability is triggered by a single malformed RTSP request. In a server-side scenario, this allows remote, unauthenticated attackers to cause a denial of service. The same flaw can be exploited against an RTSP client if it connects to a malicious or compromised RTSP server.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation results in a denial of service due to the application crashing. No impact on confidentiality or integrity has been confirmed. The vulnerability affects any application or system leveraging the GStreamer RTSP support library for handling RTSP streams, particularly those configured to use Digest authentication.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003col\u003e\n\u003cli\u003eInventory all services and applications utilizing the GStreamer library for RTSP handling.\u003c/li\u003e\n\u003cli\u003eMonitor for RTSP traffic patterns containing abnormal whitespace in Digest authentication headers.\u003c/li\u003e\n\u003cli\u003eApply available patches from the GStreamer project as soon as they are integrated into downstream software distributions.\u003c/li\u003e\n\u003cli\u003eImplement strict request validation at the network perimeter or application gateway for RTSP traffic if immediate patching is not possible.\u003c/li\u003e\n\u003c/ol\u003e\n","date_modified":"2026-09-03T13:21:49Z","date_published":"2026-09-03T13:21:49Z","id":"https://feed.craftedsignal.io/briefs/2026-09-gstreamer-rtsp-dos/","summary":"A NULL pointer dereference vulnerability in the GStreamer RTSP support library allows remote, unauthenticated attackers to trigger a denial of service by sending a malformed RTSP request containing specifically crafted whitespace in Digest authentication headers.","title":"Denial of Service in GStreamer RTSP Support Library via Malformed Digest Headers","url":"https://feed.craftedsignal.io/briefs/2026-09-gstreamer-rtsp-dos/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:gstreamer:gstreamer:*:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}