ELSA-2026-59179

ELSA-2026-59179 - gstreamer1-plugins-good security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2026-08-24

Description


[1.16.1-7.7]
- Fix CVE-2026-18296: heap buffer overflow in qtmoovrecover
Resolves: RHEL-246382

[1.16.1-7.6]
- Fix CVE-2026-18298: heap buffer overflow in GdkPixbuf image decoder
Resolves: RHEL-246561

[1.16.1-7.5]
- Fix CVE-2026-18299: Use-After-Free in rtpsbcdepay
Resolves: RHEL-246618

[1.16.1-7.4]
- Fix CVE-2026-18296: validate box sizes and versions in
qtmoovrecover (atomsrecovery)
Resolves: RHEL-246549


Related CVEs


CVE-2026-18295
CVE-2026-18296
CVE-2026-18298
CVE-2026-18299

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) gstreamer1-plugins-good-1.16.1-7.el8_10.7.src.rpmd4a10125d77ff3eefbb7fef5cb20c2936f640b9ec058420b5beb94c487f8eab6-ol8_aarch64_appstream
gstreamer1-plugins-good-1.16.1-7.el8_10.7.aarch64.rpm99b1043803229f27a7fb77a7eeb6edf9746bfdee6bb29e316664da90dd914156-ol8_aarch64_appstream
gstreamer1-plugins-good-gtk-1.16.1-7.el8_10.7.aarch64.rpm29cb36beaf6c9735a669b9d265078d2c3d2f65283147bd4600484e4238e16742-ol8_aarch64_appstream
Oracle Linux 8 (x86_64) gstreamer1-plugins-good-1.16.1-7.el8_10.7.src.rpmd4a10125d77ff3eefbb7fef5cb20c2936f640b9ec058420b5beb94c487f8eab6-ol8_x86_64_appstream
gstreamer1-plugins-good-1.16.1-7.el8_10.7.i686.rpm236a308abb8d2879a905d055835790255664d1ac44701f4189c5feaa0ab6a2ce-ol8_x86_64_appstream
gstreamer1-plugins-good-1.16.1-7.el8_10.7.x86_64.rpmba36d5bd82dc4f111ca67431000c173801c3654ceeaadb73316ad591d74589de-ol8_x86_64_appstream
gstreamer1-plugins-good-gtk-1.16.1-7.el8_10.7.i686.rpmc4573b59360a292f0c787755066a46c31c5c73c778ac10118247534f7463f424-ol8_x86_64_appstream
gstreamer1-plugins-good-gtk-1.16.1-7.el8_10.7.x86_64.rpm43290c9462b428c17a395b258e7ca933468f751538f544eb3dc555528b8fe92a-ol8_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete