CVE-2026-18649: Red Hat Enterprise Linux 10
High severity, CVSS 7.5. EPSS: 1% chance of exploitation in the next 30 days.
A flaw was found in the GStreamer gst-plugins-good package. The rtph264depay and rtph265depay RTP depayloader elements do not enforce a maximum size limit on the reassembly buffer used during fragmented RTP packet processing. A remote, unauthenticated attacker can send a continuous stream of RTP fragments without ever transmitting an end-of-fragment marker, causing the reassembly buffer to grow without bound until process memory is exhausted. This results in a denial of service through process termination.
Affected products
- Red Hat Red Hat Enterprise Linux 10: before 0:1.26.7-2.el10_2.3 (fixed in 0:1.26.7-2.el10_2.3)
- Red Hat Red Hat Enterprise Linux 10.0 Extended Update Support: before 0:1.24.11-1.el10_0.4 (fixed in 0:1.24.11-1.el10_0.4)
- Red Hat Red Hat Enterprise Linux 7 Extended Lifecycle Support: before 0:1.10.4-4.el7_9.3 (fixed in 0:1.10.4-4.el7_9.3)
- Red Hat Red Hat Enterprise Linux 8: before 0:1.16.1-7.el8_10.3 (fixed in 0:1.16.1-7.el8_10.3)
- Red Hat Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support: before 0:1.16.1-4.el8_4.2 (fixed in 0:1.16.1-4.el8_4.2)
- Red Hat Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On: before 0:1.16.1-4.el8_4.2 (fixed in 0:1.16.1-4.el8_4.2)
- Red Hat Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support: before 0:1.16.1-4.el8_6.3 (fixed in 0:1.16.1-4.el8_6.3)
- Red Hat Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On: before 0:1.16.1-4.el8_6.3 (fixed in 0:1.16.1-4.el8_6.3)
- Red Hat Red Hat Enterprise Linux 8.8 Telecommunications Update Service: before 0:1.16.1-5.el8_8.3 (fixed in 0:1.16.1-5.el8_8.3)
- Red Hat Red Hat Enterprise Linux 8.8 Update Services For SAP Solutions: before 0:1.16.1-5.el8_8.3 (fixed in 0:1.16.1-5.el8_8.3)
- Red Hat Red Hat Enterprise Linux 9: before 0:1.22.12-7.el9_8.2 (fixed in 0:1.22.12-7.el9_8.2)
- Red Hat Red Hat Enterprise Linux 9.2 Update Services For SAP Solutions: before 0:1.18.4-8.el9_2.2 (fixed in 0:1.18.4-8.el9_2.2)
- Red Hat Red Hat Enterprise Linux 9.4 Update Services For SAP Solutions: before 0:1.22.1-4.el9_4.2 (fixed in 0:1.22.1-4.el9_4.2)
- Red Hat Red Hat Enterprise Linux 9.6 Extended Update Support: before 0:1.22.12-5.el9_6.2 (fixed in 0:1.22.12-5.el9_6.2)
Published 2026-08-06. Last modified 2026-09-23.