GStreamer plugins with good code and licensing
Backport upstream commit 93fa4cd3 to fix CVE-2026-18296 in
gstreamer1-plugins-good. The patch adds box size and version
validation to atomsrecovery.c (qtmoovrecover), preventing
potential issues with malformed input files.
CVE: CVE-2026-18296
Upstream patches:
-
|
||
|---|---|---|
| .gitignore | ||
| 0001-jitterbuffer-Allow-rtp-caps-without-clock-rate.patch | ||
| 0001-rtpqdm2depay-error-out-if-anyone-tries-to-use-this-e.patch | ||
| gating.yaml | ||
| gstreamer1-plugins-good-1.26.7-CVE-2026-5056.patch | ||
| gstreamer1-plugins-good-1.26.7-CVE-2026-18296.patch | ||
| gstreamer1-plugins-good-1.26.7-CVE-2026-18649.patch | ||
| gstreamer1-plugins-good-1.26.7-CVE-2026-53705.patch | ||
| gstreamer1-plugins-good-1.26.7-CVE-2026-73433.patch | ||
| gstreamer1-plugins-good-1.26.7-CVE-2026-73434.patch | ||
| gstreamer1-plugins-good.spec | ||
| gstreamer-good.appdata.xml | ||
| sources | ||