4
/ 10
MEDIUM
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Description
An issue was discovered in GStreamer gst-plugins-good before 1.28.2. When parsing MP4 audio tracks, the isomp4 plugin's qtdemux_audio_caps function does not sufficiently validate atom data before performing division operations, leading to denial of service due to integer division by zero.
Basic Information
ID
CVE-2026-46470
Source
mitre
Published
May 14, 2026 at 17:40
Modified
May 14, 2026 at 18:05
Affected Product
Vendor
GStreamer
Product
Good Plug-ins
Affected Versions
GStreamer Good Plug-ins 0