CVE-2026-85150: Red Hat Enterprise Linux 10

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

A NULL pointer dereference flaw was found in GStreamer's RTSP support library. The vulnerability occurs while parsing an Authorization or WWW-Authenticate header that uses Digest authentication. Specially crafted whitespace placement around a parameter's terminator can cause an internal length calculation to underflow, leading to a crash of the process parsing the header. On an RTSP server this can be triggered by a remote, unauthenticated attacker sending a single malformed request when the server has authentication enabled; the same flaw can also be triggered against an RTSP client by a malicious or compromised RTSP server. Successful exploitation results in a denial of service (application crash) and has no confirmed impact on confidentiality or integrity.

Affected products

  • Red Hat Red Hat Enterprise Linux 10: before 0:1.26.7-2.el10_2.2 (fixed in 0:1.26.7-2.el10_2.2)
  • Red Hat Red Hat Enterprise Linux 7
  • Red Hat Red Hat Enterprise Linux 8: before 0:1.16.1-7.el8_10 (fixed in 0:1.16.1-7.el8_10)
  • Red Hat Red Hat Enterprise Linux 9: before 0:1.22.12-8.el9_8.2 (fixed in 0:1.22.12-8.el9_8.2)

Published 2026-09-03. Last modified 2026-09-21.