gpp_maybe Security update for gstreamer-plugins-bad
SUSE-SLES-16.0-1279


This update for gstreamer-plugins-bad fixes the following issues - CVE-2026-12891: unchecked aspect_ratio_idc value used as an array index in the H.266 parser could cause a global out- of-bounds read (bsc#1268872). - CVE-2026-12892: 1-byte heap out-of-bounds read in H.264 NAL extension slice parser (bsc#1268971). - CVE-2026-14935: webrtcbin accepts remote SDP without a=fingerprint due to inverted presence check (bsc#1271051). - CVE-2026-52720: invalid check of total area instead of individual dimensions could trigger a heap out-of-bounds write (bsc#1268406). - CVE-2026-52721: crafted PCAP records during IPv4 or TCP header parsing could cause an out-of-bounds read (bsc#1268408). - CVE-2026-52722: crafted VMnc stream with large cursor dimensions can overflow signed integer (bsc#1268410). - CVE-2026-53701: multi-slice-in-tile partitions without slice index bounds checks could trigger an out-of-bounds write (bsc#1268172). - CVE-2026-53702: incorrect loop bound during H.265 SEI message parsing could result in a stack buffer overflow (bsc#1268168). - CVE-2026-59692: unvalidated peer certificate Subject DN printed during a DTLS handshake could cause a stack buffer overflow (bsc#1271168).


cloud_download Downloads

SUSE Linux Enterprise Server 16.0 aarch64
SUSE Linux Enterprise Server 16.0 ppc64le
SUSE Linux Enterprise Server 16.0 s390x
SUSE Linux Enterprise Server 16.0 x86_64
SUSE Linux Enterprise Server for SAP applications 16.0 ppc64le
SUSE Linux Enterprise Server for SAP applications 16.0 x86_64