Out-of-bounds read in gst-plugins-bad and gstreamer - #VU141122

 

Out-of-bounds read in gst-plugins-bad and gstreamer - #VU141122

Published: August 6, 2026


Vulnerability identifier: #VU141122
CSH Severity: Medium
CVSS v4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:L/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: N/A
CWE-ID: CWE-125
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to cause a denial of service or disclose sensitive information.

The vulnerability exists due to out-of-bounds read in the VP9 parser when parsing VP9 superframe metadata. A remote attacker can provide a crafted VP9 superframe with a short buffer and large index size fields to cause a denial of service or disclose sensitive information.

The issue is triggered because the computed superframe index size is not validated against the provided data buffer before index parsing.


Affected software

gst-plugins-bad
gstreamer

Remediation

Install security update from vendor's website.

gst-plugins-bad - update to 1.28.5
gstreamer - update to 1.28.5

External References

Related Security Bulletins