Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2970 articles · 185100 vulns · 37/41 feeds (7d)
← Back to list
7.5
CVE-2026-18649EXPLOITED
red hat · red hat enterprise linux

Gst-plugins-good: gst-plugins-good: unbounded memory growth in rtph264depay and rtph265depay rtp depayloaders

Description

A flaw was found in the GStreamer gst-plugins-good package. The rtph264depay and rtph265depay RTP depayloader elements do not enforce a maximum size limit on the reassembly buffer used during fragmented RTP packet processing. A remote, unauthenticated attacker can send a continuous stream of RTP fragments without ever transmitting an end-of-fragment marker, causing the reassembly buffer to grow without bound until process memory is exhausted. This results in a denial of service through process termination.

Affected Products

VendorProductVersions
red hatred hat enterprise linux—

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
open sourcegstreamercert_advisory90%

References

  • https://access.redhat.com/security/cve/CVE-2026-18649(vdb-entry, x_refsource_REDHAT)
  • https://bugzilla.redhat.com/show_bug.cgi?id=2510614(issue-tracking, x_refsource_REDHAT)
  • https://gitlab.freedesktop.org/gstreamer/gstreamer-security/-/merge_requests/113

Related News (2 articles)

Tier B
BSI Advisories2d ago
[NEU] [hoch] GStreamer: Mehrere Schwachstellen
→ No new info (linked only)
Tier C
VulDB2d ago
CVE-2026-18649 | GStreamer gst-plugins-good/rtph264depay/rtph265depay resource consumption
→ No new info (linked only)
CVSS 3.17.5 NONE
CISA KEV❌ No
Actively exploited✅ Yes
CWECWE-770
PublishedAug 6, 2026
Last enriched2d ago
Tags
remote code executionfile manipulationdenial of servicemultiple vulnerabilities
Trending Score39
Source articles2
Independent2
Info Completeness0/14
Missing: cve_id, title, description, vendor, product, versions, cvss, epss, cwe, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

NONECVE-2026-4480EXPKEV
Samba: samba: remote code execution in printing subsystem via unescaped job description
Trending: 80
HIGHCVE-2026-42170EXP
Gimp: gimp dds plug-in heap-based buffer overflow via bpp mismatch in load_layer() (ddsread.c)
Trending: 44
NONECVE-2026-11332EXP
Ansible-core: argument injection in ansible-galaxy role install leads to arbitrary code execution
Trending: 35
NONECVE-2026-4408
Samba: remote code execution in samr
Trending: 34
NONECVE-2026-3012
Samba: group policy certificate enrollment uses http:// without validation
Trending: 33

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Aug 6, 2026
Discovered by ZDM
Aug 6, 2026
Actively Exploited
Aug 6, 2026
Exploit Available
Aug 6, 2026