CVE-2026-73434 | GStreamer up to 1.24.10 AVI gst_avi_demux_riff_parse_vprp fields out-of-bounds
A vulnerability classified as critical has been found in GStreamer up to 1.24.10. This impacts the function gst_avi_demux_riff_parse_vprp of the component AVI Handler. The manipulation of the argument fields leads to out-of-bounds read.
This vulnerability is referenced as CVE-2026-73434. Remote exploitation of the attack is possible. No exploit is available.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More