Commit Graph

9 Commits

Author SHA1 Message Date
RHEL Packaging Agent
e3fa46713d Fix CVE-2026-18297: opusdec channel position overflow
Backport upstream fix (GStreamer MR !12044) for
CVE-2026-18297 to gstreamer1-plugins-base-1.16.1.

The patch adds a guard in gst_opus_dec_negotiate() to avoid
using channel positions when there are more than 64 channels,
which is unsupported. The patch paths were adjusted from the
upstream monorepo layout to the standalone 1.16.1 source tree.

CVE: CVE-2026-18297
Upstream patches:
 - https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/12044.patch
Resolves: RHEL-246576

This commit was backported by Ymir, a Red Hat Enterprise Linux software maintenance AI agent.

Assisted-by: Ymir
2026-08-25 07:13:42 +00:00
Wim Taymans
1b37d2ac58 Add patch for CVE-2026-2921
Resolves: RHEL-156169
2026-03-31 12:57:07 +02:00
Wim Taymans
c8375f1253 Fixes for CVE-2024-47538, CVE-2024-47607, CVE-2024-47615
Resolves: RHEL-70974, RHEL-71010, RHEL-70986
2024-12-16 16:02:11 +01:00
Wim Taymans
06ef7b1a04 CVE-2024-4453 gstreamer1: EXIF Metadata Parsing Integer Overflow
Resolves: RHEL-38509
2024-11-08 10:51:56 +01:00
Wim Taymans
d41e314f67 CVE-2023-37328 gstreamer1-plugins-base: heap overwrite in subtitle parsing
Resolves: RHEL-19472
2024-01-17 16:10:29 +01:00
Troy Dawson
4e44233231 Bring gating.yaml over from Brew dist-git
Signed-off-by: Troy Dawson <tdawson@redhat.com>
2023-03-10 10:43:12 -08:00
James Antill
f6daa9f99c Import rpm: c8s 2023-02-27 13:29:35 -05:00
James Antill
1494bed895 Auto sync2gitlab import of gstreamer1-plugins-base-1.16.1-2.el8.src.rpm 2022-05-26 09:17:06 -04:00
James Antill
ebcf99408e Initial c8s branch. 2022-05-26 09:16:56 -04:00