Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
5071 articles · 189145 vulns · 37/41 feeds (7d)
← Back to list
7.6
CVE-2026-73433EXPLOITEDPATCHED
red hat · red hat enterprise linux

Gstreamer1-plugins-good: gstreamer: unsigned integer underflow in avidemux fujifilm strd parsing leading to out-of-bounds read/write

Description

A flaw was found in GStreamer gst-plugins-good (avidemux). When parsing FUJIFILM metadata in an AVI strd chunk, gst_avi_demux_parse_strd() decrements a remaining-length counter by fixed offsets (98 and 10 bytes) without verifying sufficient data remains. For crafted strd payloads of exactly 106 or 107 bytes, the counter underflows to a very large unsigned value, causing subsequent null-terminated string scanning to read far beyond the allocated heap buffer. Date-format normalization may also write beyond the buffer end. Confirmed impacts include heap out-of-bounds read, out-of-bounds write, heap information disclosure (adjacent data appearing in parsed metadata), and application crash/denial of service. The avidemux element is auto-plugged by playbin, decodebin, and gst-discoverer, so opening or previewing a crafted AVI is sufficient to trigger the issue. Fixed upstream in gst-plugins-good 1.28.6 (GStreamer-SA-2026-0072).

Affected Products

VendorProductVersions
red hatred hat enterprise linux0

References

  • https://access.redhat.com/security/cve/CVE-2026-73433(vdb-entry, x_refsource_REDHAT)
  • https://bugzilla.redhat.com/show_bug.cgi?id=2514801(issue-tracking, x_refsource_REDHAT)
  • https://gitlab.freedesktop.org/gstreamer/gstreamer/-/merge_requests/12231
  • https://gstreamer.freedesktop.org/security/sa-2026-0072.html

Related News (1 articles)

Tier C
VulDB2h ago
CVE-2026-73433 | GStreamer up to 1.24.10 Avidemux gst_avi_demux_parse_strd out-of-bounds
→ No new info (linked only)
CVSS 3.17.6 NONE
CISA KEV❌ No
Actively exploited✅ Yes
Patch available
1.28.6
CWECWE-191
PublishedAug 12, 2026
Last enriched2h ago
Tags
remote code executionfile manipulationdenial of servicemultiple vulnerabilities
Trending Score40
Source articles1
Independent1
Info Completeness0/14
Missing: cve_id, title, description, vendor, product, versions, cvss, epss, cwe, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

NONECVE-2026-4480EXPKEV
Samba: samba: remote code execution in printing subsystem via unescaped job description
Trending: 47
NONECVE-2026-59091EXP
Gimp: gimp: multiple vulnerabilities in file format plugins via crafted image file
Trending: 46
MEDIUMCVE-2026-6426EXP
Qemu-kvm: vhost inflight migration vmstate integer type mismatch causes out-of-bounds access
Trending: 44
NONECVE-2026-59090EXP
Gimp: gimp: arbitrary code execution in psd plugin due to unsigned underflow
Trending: 43
NONECVE-2026-63623EXP
Libvirt: information disclosure via world-readable storage volume images during clone/convert
Trending: 42

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Aug 12, 2026
Discovered by ZDM
Aug 12, 2026
Actively Exploited
Aug 12, 2026
Exploit Available
Aug 12, 2026
Patch Available
Aug 12, 2026