FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

gstreamer1-plugins-bad -- stack buffer overflow in H.266 video parser

Affected packages
gstreamer1-plugins-bad < 1.26.2

Details

VuXML ID 69bfe2a4-5a39-11f0-8792-4ccc6adda413
Discovery 2025-06-26
Entry 2025-07-06

GStreamer Security Center reports:

It is possible for a malicious third party to trigger a buffer overflow that can result in a crash of the application and possibly also allow code execution through stack manipulation.

References

CVE Name CVE-2025-6663
URL https://gstreamer.freedesktop.org/security/sa-2025-0007.html