-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-6489-1 [email protected] https://www.debian.org/security/ Moritz Muehlenhoff September 08, 2026 https://www.debian.org/security/faq - -------------------------------------------------------------------------
Package : gst-plugins-base1.0 CVE ID : CVE-2026-18297 An buffer overflow was discovered in the OPUS audio decoder of the GStreamer media framework, which may result in denial of service or potentially the execution of arbitrary code if a malformed audio file is processed. For the stable distribution (trixie), this problem has been fixed in version 1.26.2-1+deb13u2. We recommend that you upgrade your gst-plugins-base1.0 packages. For the detailed security status of gst-plugins-base1.0 please refer to its security tracker page at: https://security-tracker.debian.org/tracker/gst-plugins-base1.0 Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: [email protected] -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmqgXpcACgkQEMKTtsN8 TjaUKg/+MJgIZCaBBYuLCe16fOYjv8s2OaU97sAQkGw3Pxuer0Dn2jVODM/nADK3 Pgcp4ZE1jK1mIOlqguug9iOBfU1DPQQEwfNgnyYcYs+X1aLJ8+gIyU04hcQ+JmWL yRpbHU5BIAg2t53aVH+RylJ/GzOYmqNMgTwYlo6t9sMnja/iFdvv/mRnriV9v6L2 GMf4uAxO6bjUTYPyHMs74zGDRalBFPAujlu8qXz2tZg0espCu4mkhmEPqQwUlxPg n/+U7GtcoYoRI4GWLFpZ73UrAUsqycRiIYz1LVlcFgApDeV2s62bZBoiROePQ9fO xHH872jGXltfvN6wCGA2nXA1yFjLMe/HTYwzsHupzlqyBTIkWxVQHiD9UrgVH4gi 1TzoF47XB/SrW+5LFritPK+AABSsYjZlykq21WUROGsRWJaorPTEQhoRXEJfc2+/ f5i0oOfVp6qZK/T/gHhfxEvLDdhaS4UF0XBI4pIsxABth5JdVRC3lPTvr6D0ZsmW dbnj8fyUDN5746KFpB/3ijEFNqE03AYfEzjqHmjo6eZsd6qAv2P5HdF1CVdo40KM tR+VQg2e0VPrGuVKHH7ey/k8ygRUx8UkFQSrgfyhOJY16IR6ioxCz2VX8tYReuvA 9FyO0sS80KTLA7YHF8bQLpNe9NGbdXXdnMDruHObX/LG/8eene0= =QoDm -----END PGP SIGNATURE-----

