[Git][security-tracker-team/security-tracker][master] new gst-plugins-bad1.0 issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed Jul 8 13:42:26 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
2fabe10e by Moritz Muehlenhoff at 2026-07-08T14:42:05+02:00
new gst-plugins-bad1.0 issue

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -301,7 +301,9 @@ CVE-2026-14940 (A heap-buffer-overflow flaw was found in 389 Directory Server (3
 	- 389-ds-base <unfixed>
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2497697
 CVE-2026-14935 (A logic vulnerability was found in GStreamer's webrtcbin component. Th ...)
-	TODO: check
+	- gst-plugins-bad1.0 <unfixed>
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2497679
+	NOTE: https://gitlab.freedesktop.org/gstreamer/gstreamer/-/work_items/5171 (private)
 CVE-2026-14904 (AWS Research and Engineering Studio (RES) is an open-source solution t ...)
 	NOT-FOR-US: Amazon
 CVE-2026-14868 (The encryption algorithm used to protect the configuration of user acc ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2fabe10eb08c24a6d811bfdc91ef4d8ecfaa1a3d

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2fabe10eb08c24a6d811bfdc91ef4d8ecfaa1a3d
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260708/c4fbd3ad/attachment.htm>


More information about the debian-security-tracker-commits mailing list