<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 10:40:51 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-366498</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-366498</link>
      <description>EUVD-2026-366498</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-366498</guid>
    </item>
    <item>
      <title>fkie_cve-2026-12892</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-12892</link>
      <description>&lt;p&gt;A flaw was found in GStreamer&amp;#39;s gst-plugins-bad package. When processing a specially crafted H.264 video file containing malformed MVC or SVC extension slice NAL units, a 1-byte heap out-of-bounds read can occur during parsing. This happens when the parser attempts to check slice boundary information without first verifying that the NAL unit contains enough data beyond the extension header. An attacker could exploit this by tricking a user into opening a malicious H.264 video file, potentially causing the application to crash or leak a single byte of heap memory.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in GStreamer&amp;#39;s gst-plugins-bad package. When processing a specially crafted H.264 video file containing malformed MVC or SVC extension slice NAL units, a 1-byte heap out-of-bounds read can occur during parsing. This happens when the parser attempts to check slice boundary information without first verifying that the NAL unit contains enough data beyond the extension header. An attacker could exploit this by tricking a user into opening a malicious H.264 video file, potentially causing the application to crash or leak a single byte of heap memory.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-12892</guid>
    </item>
    <item>
      <title>GHSA-mc62-3gf7-rphg</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-mc62-3gf7-rphg</link>
      <description>&lt;p&gt;A flaw was found in GStreamer&amp;#39;s gst-plugins-bad package. When processing a specially crafted H.264 video file containing malformed MVC or SVC extension slice NAL units, a 1-byte heap out-of-bounds read can occur during parsing. This happens when the parser attempts to check slice boundary information without first verifying that the NAL unit contains enough data beyond the extension header. An attacker could exploit this by tricking a user into opening a malicious H.264 video file, potentially causing the application to crash or leak a single byte of heap memory.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in GStreamer&amp;#39;s gst-plugins-bad package. When processing a specially crafted H.264 video file containing malformed MVC or SVC extension slice NAL units, a 1-byte heap out-of-bounds read can occur during parsing. This happens when the parser attempts to check slice boundary information without first verifying that the NAL unit contains enough data beyond the extension header. An attacker could exploit this by tricking a user into opening a malicious H.264 video file, potentially causing the application to crash or leak a single byte of heap memory.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-mc62-3gf7-rphg</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:21370-1 — Security update for gstreamer-plugins-bad</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:21370-1</link>
      <description>&lt;p&gt;Security update for gstreamer-plugins-bad&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for gstreamer-plugins-bad&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:21370-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2026:22752-1 — Security update for gstreamer-plugins-bad</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2026:22752-1</link>
      <description>&lt;p&gt;Security update for gstreamer-plugins-bad&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for gstreamer-plugins-bad&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2026:22752-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-12892</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-12892</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: gst-plugins-bad1.0, Ubuntu:Pro:16.04:LTS: gst-plugins-bad1.0, Ubuntu:Pro:18.04:LTS: gst-plugins-bad1.0, Ubuntu:Pro:20.04:LTS: gst-plugins-bad1.0, Ubuntu:Pro:22.04:LTS: gst-plugins-bad1.0, Ubuntu:Pro:24.04:LTS: gst-plugins-bad1.0, Ubuntu:25.10: gst-plugins-bad1.0, Ubuntu:26.04:LTS: gst-plugins-bad1.0&lt;/p&gt;
&lt;p&gt;A flaw was found in GStreamer&amp;#39;s gst-plugins-bad package. When processing a specially crafted H.264 video file containing malformed MVC or SVC extension slice NAL units, a 1-byte heap out-of-bounds read can occur during parsing. This happens when the parser attempts to check slice boundary information without first verifying that the NAL unit contains enough data beyond the extension header. An attacker could exploit this by tricking a user into opening a malicious H.264 video file, potentially causing the application to crash or leak a single byte of heap memory.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: gst-plugins-bad1.0, Ubuntu:Pro:16.04:LTS: gst-plugins-bad1.0, Ubuntu:Pro:18.04:LTS: gst-plugins-bad1.0, Ubuntu:Pro:20.04:LTS: gst-plugins-bad1.0, Ubuntu:Pro:22.04:LTS: gst-plugins-bad1.0, Ubuntu:Pro:24.04:LTS: gst-plugins-bad1.0, Ubuntu:25.10: gst-plugins-bad1.0, Ubuntu:26.04:LTS: gst-plugins-bad1.0&lt;/p&gt;
&lt;p&gt;A flaw was found in GStreamer&amp;#39;s gst-plugins-bad package. When processing a specially crafted H.264 video file containing malformed MVC or SVC extension slice NAL units, a 1-byte heap out-of-bounds read can occur during parsing. This happens when the parser attempts to check slice boundary information without first verifying that the NAL unit contains enough data beyond the extension header. An attacker could exploit this by tricking a user into opening a malicious H.264 video file, potentially causing the application to crash or leak a single byte of heap memory.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-12892</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-2053 — GStreamer: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2053</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in GStreamer ausnutzen, um Informationen offenzulegen, und um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in GStreamer ausnutzen, um Informationen offenzulegen, und um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2053</guid>
    </item>
  </channel>
</rss>
