PT-2026-71266 · Gstreamer+1 · Gst-Plugins-Good+1

CVE-2026-73434

·

Published

2026-08-12

·

Updated

2026-08-20

CVSS v3.1

7.6

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H
Name of the Vulnerable Software and Affected Versions GStreamer gst-plugins-good versions prior to 1.28.6
Description A flaw exists in the gst avi demux riff parse vprp() function where the number of available gst riff vprp video field desc entries is calculated by dividing the remaining buffer size by the attacker-controlled vprp->fields value instead of by the size of the descriptor structure. This logic error allows the parser to identify more field descriptors than are actually present in the input buffer, leading to out-of-bounds reads. An attacker can trigger a denial of service by providing a specially crafted AVI file processed via playbin or decodebin, causing the application to crash.
Recommendations Update to version 1.28.6.

Exploit

Fix

DoS

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2026:55434
ALSA-2026:55436
ALSA-2026:56966
CVE-2026-73434
ECHO-A321-5A7E-9F85
OESA-2026-3481
OESA-2026-3484

Affected Products

Rocky Linux
Gst-Plugins-Good