Skip to content
Threat Feed

Vendor

GStreamer

10 briefs RSS
low advisory

Denial of Service in GStreamer RTSP Support Library via Malformed Digest Headers

A NULL pointer dereference vulnerability in the GStreamer RTSP support library allows remote, unauthenticated attackers to trigger a denial of service by sending a malformed RTSP request containing specifically crafted whitespace in Digest authentication headers.

GStreamer RTSP support library
1c
high advisory

Integer Overflow Vulnerability in GStreamer gst-plugins-ugly

Multiple integer overflow and underflow vulnerabilities in the GStreamer gst-plugins-ugly ASF demuxer allow remote attackers to cause application crashes or information disclosure via crafted media files.

gst-plugins-ugly
1c
high advisory

Heap Out-of-Bounds Write in GStreamer adpcmdec Element

A heap out-of-bounds write vulnerability in the GStreamer gst-plugins-bad adpcmdec element allows attackers to trigger memory corruption or arbitrary code execution via crafted WAV files.

gst-plugins-bad vulnerability memory-corruption
1c
high advisory

Multiple Vulnerabilities in GStreamer

Multiple vulnerabilities in GStreamer could allow a remote attacker to induce a denial-of-service, disclose sensitive information, or potentially execute arbitrary code.

GStreamer
1t
high advisory

Denial of Service Vulnerability in GStreamer gst-plugins-good

A heap memory exhaustion vulnerability in the GStreamer gst-plugins-good package allows unauthenticated attackers to crash services via unbounded reassembly buffer growth.

gst-plugins-good +1 denial-of-service memory-exhaustion gstreamer
1t 1c updated
medium advisory

CVE-2026-59692: GStreamer DTLS Plugin Stack Buffer Overflow Leading to DoS

A stack buffer overflow vulnerability, CVE-2026-59692, exists in GStreamer's DTLS plugin, allowing a remote unauthenticated attacker to cause a denial of service by sending a crafted certificate with an oversized Subject Distinguished Name during a DTLS handshake, which the plugin prints into a fixed-size stack buffer without bounds checking, leading to a process crash.

DTLS plugin +2 denial-of-service buffer-overflow vulnerability dtls gstreamer linux high_confidence_source watchlist_match
2t 1c
high advisory

CVE-2026-59691: GStreamer rfbsrc Heap Buffer Overflow Leads to DoS

A heap buffer overflow vulnerability (CVE-2026-59691) exists in GStreamer's rfbsrc plugin, allowing a malicious RFB/VNC server to trigger an out-of-bounds heap write in connecting clients, leading to denial of service and potential memory corruption.

GStreamer rfbsrc plugin +2 vulnerability heap-overflow denial-of-service gstreamer linux red-hat cve
1t 1c
medium advisory

Multiple Vulnerabilities in GStreamer

Multiple vulnerabilities in GStreamer can be exploited by a remote, anonymous attacker to disclose information, conduct a denial-of-service attack, corrupt data, or execute arbitrary code.

GStreamer vulnerability denial-of-service code-execution
2r 3t
critical advisory

GStreamer Multiple Vulnerabilities Allow Remote Code Execution and Denial of Service

Multiple vulnerabilities in GStreamer could be exploited by a remote, anonymous attacker to execute arbitrary code or cause a denial of service condition.

GStreamer rce dos
2r 2t 5c
critical advisory

GStreamer Multiple Vulnerabilities Allow for Remote Code Execution and Denial of Service

Multiple vulnerabilities in GStreamer allow a remote, anonymous attacker to cause a denial-of-service condition or execute arbitrary code.

GStreamer vulnerability denial-of-service remote-code-execution
2r 2t 5c