[ALSA-2026:56521] Important: gstreamer1-plugins-bad-free security update
Type:
security
Severity:
important
Release date:
2026-08-19
Description:
GStreamer is a streaming media framework based on graphs of filters which operate on media data. The gstreamer1-plugins-bad-free package contains a collection of plug-ins for GStreamer. Security Fix(es): * gstreamer: gstreamer1-plugins-bad-free: gstreamer: heap out-of-bounds write in adpcmdec IMA/DVI ADPCM decoder (CVE-2026-19387) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 gstreamer1-plugins-bad-free-devel-1.16.1-9.el8_10.2.aarch64.rpm 33eaf04ae1a378add4988ecbd09952153208457ec59446abd9abdc3a37f57602
aarch64 gstreamer1-plugins-bad-free-1.16.1-9.el8_10.2.aarch64.rpm d40c8f188bde80e0fa91c4fcd36f4ffb0ed0be4732e72b560ab2ab882dc810fd
i686 gstreamer1-plugins-bad-free-1.16.1-9.el8_10.2.i686.rpm 5f4d71c210baf41fe5139c7a424f4f4f0fa8a018bd50bb1a74cf38a2bbc6434f
i686 gstreamer1-plugins-bad-free-devel-1.16.1-9.el8_10.2.i686.rpm fb16fe2c0b88a05aec93d449a7768c88714cb3606a82aacc554903c0d9063ce2
ppc64le gstreamer1-plugins-bad-free-devel-1.16.1-9.el8_10.2.ppc64le.rpm 849b7f0115e2e47b0d33f74529fb8d3f73aae787f5d5634f12bcb7da768fb35a
ppc64le gstreamer1-plugins-bad-free-1.16.1-9.el8_10.2.ppc64le.rpm d8dcade307fe917553a06e020d67a3805eb2e8f8da558799db36a7bb92e3d86c
s390x gstreamer1-plugins-bad-free-devel-1.16.1-9.el8_10.2.s390x.rpm 3e4a66c0d168fced8184711e8a8e972d17fd1e3d4cda3e53982161350359effd
s390x gstreamer1-plugins-bad-free-1.16.1-9.el8_10.2.s390x.rpm bf39672c3c20f64d86e78e8b4e4853a7417f7643fd4e3b1fa26685b1204a795b
x86_64 gstreamer1-plugins-bad-free-1.16.1-9.el8_10.2.x86_64.rpm 3ca311dfe5b15870977c9afaf2def91007b959e8ea979a7d15747cee2348f486
x86_64 gstreamer1-plugins-bad-free-devel-1.16.1-9.el8_10.2.x86_64.rpm 3fd7856d4634cff514e35a5ebb8740fb0bb47628b56ed69ab0e83607e3401ea3
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.