File _patchinfo of Package patchinfo.43092
<patchinfo incident="43092"> <!--generated with prepare-update from request 403153--> <issue tracker="bnc" id="1259367">VUL-0: CVE-2026-2920: gstreamer-plugins-ugly: GStreamer ASF Demuxer Heap-based Buffer Overflow Remote Code Execution Vulnerability</issue> <issue tracker="bnc" id="1259370">VUL-0: CVE-2026-2922: gstreamer-plugins-ugly: GStreamer RealMedia Demuxer Out-Of-Bounds Write Remote Code Execution Vulnerability</issue> <issue tracker="cve" id="2026-2920"/> <issue tracker="cve" id="2026-2922"/> <category>security</category> <rating>important</rating> <packager>alarrosa</packager> <summary>Security update for gstreamer-plugins-ugly</summary> <description>This update for gstreamer-plugins-ugly fixes the following issues: - CVE-2026-2920: GStreamer ASF Demuxer Heap-based Buffer Overflow Remote Code Execution Vulnerability (bsc#1259367). - CVE-2026-2922: GStreamer RealMedia Demuxer Out-Of-Bounds Write Remote Code Execution Vulnerability (bsc#1259370). </description> </patchinfo>