Vulnerability Description
Multiple out-of-bounds read vulnerabilities were found in GStreamer's pcapparse element. Malformed PCAP records can trigger reads beyond buffer boundaries during IPv4/TCP header parsing. This element is primarily used in debugging pipelines, limiting real-world exposure. A local attacker could trick a user into processing a specially crafted PCAP file, potentially leading to a crash or information disclosure.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://access.redhat.com/security/cve/CVE-2026-52721
- https://bugzilla.redhat.com/show_bug.cgi?id=2486732
- https://gitlab.freedesktop.org/gstreamer/gstreamer/-/work_items/5106
FAQ
What is CVE-2026-52721?
CVE-2026-52721 is a vulnerability with a CVSS score of 5.3 (MEDIUM). Multiple out-of-bounds read vulnerabilities were found in GStreamer's pcapparse element. Malformed PCAP records can trigger reads beyond buffer boundaries during IPv4/TCP header parsing. This element ...
How severe is CVE-2026-52721?
CVE-2026-52721 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-52721?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.