SUSE-SU-2026:2727-1

Source
https://www.suse.com/support/update/announcement/2026/suse-su-20262727-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:2727-1.json
JSON Data
https://api.test.osv.dev/v1/vulns/SUSE-SU-2026:2727-1
Upstream
CVE (2)
Related
Published
2026-07-02T14:04:37Z
Modified
2026-07-03T11:00:05Z
Summary
Security update for gstreamer-plugins-good
Details

This update for gstreamer-plugins-good fixes the following issues

  • CVE-2024-47540: uninitialized stack memory in Matroska/WebM demuxer (bsc#1234421).
  • CVE-2026-53705: Heap buffer overflow in WavPack decoder via integer overflow (bsc#1268449).
References

Affected packages

SUSE:Linux Enterprise Server 12 SP5-LTSS / gstreamer-plugins-good

Package

Name
gstreamer-plugins-good
Purl
pkg:rpm/suse/gstreamer-plugins-good&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5-LTSS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
1.8.3-16.19.1

Ecosystem specific

{
    "binaries": [
        {
            "gstreamer-plugins-good": "1.8.3-16.19.1",
            "gstreamer-plugins-good-lang": "1.8.3-16.19.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:2727-1.json"

SUSE:Linux Enterprise Server LTSS Extended Security 12 SP5 / gstreamer-plugins-good

Package

Name
gstreamer-plugins-good
Purl
pkg:rpm/suse/gstreamer-plugins-good&distro=SUSE%20Linux%20Enterprise%20Server%20LTSS%20Extended%20Security%2012%20SP5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
1.8.3-16.19.1

Ecosystem specific

{
    "binaries": [
        {
            "gstreamer-plugins-good": "1.8.3-16.19.1",
            "gstreamer-plugins-good-lang": "1.8.3-16.19.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:2727-1.json"