{
    "document": {
        "category": "csaf_base",
        "csaf_version": "2.0",
        "distribution": {
            "tlp": {
                "label": "WHITE"
            }
        },
        "lang": "en",
        "notes": [
            {
                "category": "legal_disclaimer",
                "text": "The Netherlands Cyber Security Center (henceforth: NCSC-NL) maintains this portal to enhance access to its information and vulnerabilities. The use of this information is subject to the following terms and conditions:\n\nThe vulnerabilities disclosed in this portal are gathered by NCSC-NL from a variety of open sources, which the user can retrieve from other platforms. NCSC-NL makes every reasonable effort to ensure that the content of this portal is kept up to date, and that it is accurate and complete. Nevertheless, NCSC-NL cannot entirely rule out the possibility of errors, and therefore cannot give any warranty in respect of its completeness, accuracy or real-time keeping up-to-date. NCSC-NL does not control nor guarantee the accuracy, relevance, timeliness or completeness of information obtained from these external sources. The vulnerabilities disclosed in this portal are intended solely for the convenience of professional parties to take appropriate measures to manage the risks posed to the cybersecurity. No rights can be derived from the information provided therein.\n\nNCSC-NL and the Kingdom of the Netherlands assume no legal liability or responsibility for any damage resulting from either the use or inability of use of the vulnerabilities disclosed in this portal. This includes damage resulting from the inaccuracy of incompleteness of the information contained in it.\nThe information on this page is subject to Dutch law. All disputes related to or arising from the use of this portal regarding the disclosure of vulnerabilities will be submitted to the competent court in The Hague. This choice of means also applies to the court in summary proceedings."
            }
        ],
        "publisher": {
            "category": "coordinator",
            "contact_details": "cert@ncsc.nl",
            "name": "National Cyber Security Centre",
            "namespace": "https://www.ncsc.nl/"
        },
        "title": "CVE-2026-2923",
        "tracking": {
            "current_release_date": "2026-04-02T00:43:47.591081Z",
            "generator": {
                "date": "2026-02-17T15:00:00Z",
                "engine": {
                    "name": "V.E.L.M.A",
                    "version": "1.7"
                }
            },
            "id": "CVE-2026-2923",
            "initial_release_date": "2026-02-26T11:05:33.482948Z",
            "revision_history": [
                {
                    "date": "2026-02-26T11:05:33.482948Z",
                    "number": "1",
                    "summary": "CVE created.| Source connected.| CVE status created. (valid)| Products connected (4).| References created (14)."
                },
                {
                    "date": "2026-02-26T11:05:36.286461Z",
                    "number": "2",
                    "summary": "NCSC Score created."
                },
                {
                    "date": "2026-03-07T11:35:11.589502Z",
                    "number": "3",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-10T18:43:16.680600Z",
                    "number": "4",
                    "summary": "Source created.| CVE status created. (valid)| Products connected (2)."
                },
                {
                    "date": "2026-03-10T18:43:18.603132Z",
                    "number": "5",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-13T21:39:26.789961Z",
                    "number": "6",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| Products connected (1).| References created (2).| CWES updated (1)."
                },
                {
                    "date": "2026-03-13T21:39:29.130207Z",
                    "number": "7",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-14T06:43:05.242118Z",
                    "number": "8",
                    "summary": "Description created for source."
                },
                {
                    "date": "2026-03-14T14:53:22.210565Z",
                    "number": "9",
                    "summary": "Source created.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-03-14T14:53:28.788870Z",
                    "number": "10",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-16T14:33:33.629010Z",
                    "number": "11",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| References created (2).| CWES updated (1)."
                },
                {
                    "date": "2026-03-16T14:33:37.251803Z",
                    "number": "12",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-16T15:27:08.335425Z",
                    "number": "13",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-16T20:39:47.630163Z",
                    "number": "14",
                    "summary": "Unknown change."
                },
                {
                    "date": "2026-03-16T20:39:50.860479Z",
                    "number": "15",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-17T00:27:58.489989Z",
                    "number": "16",
                    "summary": "Source created.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (12).| Product Identifiers created (5).| Product Remediations created (12).| References created (4).| CWES updated (1).| Vendor_assessment created."
                },
                {
                    "date": "2026-03-17T00:28:05.530531Z",
                    "number": "17",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-17T19:26:07.617608Z",
                    "number": "18",
                    "summary": "Products connected (1).| Product Identifiers created (1)."
                },
                {
                    "date": "2026-03-17T19:26:10.225031Z",
                    "number": "19",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-18T09:30:02.034905Z",
                    "number": "20",
                    "summary": "Products connected (1).| References created (1)."
                },
                {
                    "date": "2026-03-18T09:30:05.492067Z",
                    "number": "21",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-20T09:35:17.118578Z",
                    "number": "22",
                    "summary": "Source connected.| CVE status created. (valid)| EPSS created."
                },
                {
                    "date": "2026-03-20T09:35:19.356263Z",
                    "number": "23",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-25T10:14:45.211319Z",
                    "number": "24",
                    "summary": "Products connected (1).| References created (1)."
                },
                {
                    "date": "2026-03-25T10:14:48.179427Z",
                    "number": "25",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-30T11:12:06.453032Z",
                    "number": "26",
                    "summary": "Products connected (1).| References created (3)."
                },
                {
                    "date": "2026-03-30T11:12:08.562130Z",
                    "number": "27",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-03-31T11:09:32.515708Z",
                    "number": "28",
                    "summary": "Products connected (1).| References created (2)."
                },
                {
                    "date": "2026-03-31T11:09:34.919007Z",
                    "number": "29",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-04-01T00:28:36.411291Z",
                    "number": "30",
                    "summary": "Source connected.| CVE status created. (valid)| Description created for source.| CVSS created.| Products connected (23).| Product Remediations created (46).| Product Identifiers created (85).| Product Identifiers removed (85).| References created (15).| CWES updated (1)."
                },
                {
                    "date": "2026-04-01T00:28:51.423476Z",
                    "number": "31",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-04-01T14:13:45.458611Z",
                    "number": "32",
                    "summary": "Products connected (1).| References created (2)."
                },
                {
                    "date": "2026-04-01T14:13:53.175885Z",
                    "number": "33",
                    "summary": "NCSC Score updated."
                },
                {
                    "date": "2026-04-02T00:43:13.426805Z",
                    "number": "34",
                    "summary": "Products connected (1).| Product Identifiers created (1).| Products removed (1)."
                },
                {
                    "date": "2026-04-02T00:43:17.881270Z",
                    "number": "35",
                    "summary": "NCSC Score updated."
                }
            ],
            "status": "interim",
            "version": "35"
        }
    },
    "product_tree": {
        "branches": [
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1295663",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Debian Linux"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:deb/1.22.0-4+deb12u7",
                                        "product": {
                                            "name": "vers:deb/1.22.0-4+deb12u7",
                                            "product_id": "CSAFPID-5983443",
                                            "product_identification_helper": {
                                                "purl": "pkg:deb/debian/gst-plugins-bad1.0@1.22.0-4+deb12u7?distro=bookworm"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gst-plugins-bad1.0"
                            }
                        ],
                        "category": "product_family",
                        "name": "bookworm"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:deb/unknown",
                                        "product": {
                                            "name": "vers:deb/unknown",
                                            "product_id": "CSAFPID-2859886"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gst-plugins-bad1.0"
                            }
                        ],
                        "category": "product_family",
                        "name": "bullseye"
                    }
                ],
                "category": "vendor",
                "name": "Debian"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/1c6e163aa33962f5ee4a87d29319ccdd5cb67612",
                                "product": {
                                    "name": "vers:unknown/1c6e163aa33962f5ee4a87d29319ccdd5cb67612",
                                    "product_id": "CSAFPID-5826008"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/<1.28.1",
                                "product": {
                                    "name": "vers:unknown/<1.28.1",
                                    "product_id": "CSAFPID-5839045",
                                    "product_identification_helper": {
                                        "cpe": "cpe:2.3:a:gstreamer:gstreamer:*:*:*:*:*:*:*:*"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "GStreamer"
                    }
                ],
                "category": "vendor",
                "name": "GStreamer"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/gst-plugins-bad <1.28.1",
                                "product": {
                                    "name": "vers:unknown/gst-plugins-bad <1.28.1",
                                    "product_id": "CSAFPID-5726737"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/gst-plugins-base <1.28.1",
                                "product": {
                                    "name": "vers:unknown/gst-plugins-base <1.28.1",
                                    "product_id": "CSAFPID-5726739"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/gst-plugins-good <1.28.1",
                                "product": {
                                    "name": "vers:unknown/gst-plugins-good <1.28.1",
                                    "product_id": "CSAFPID-5726736"
                                }
                            },
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/gst-plugins-ugly <1.28.1",
                                "product": {
                                    "name": "vers:unknown/gst-plugins-ugly <1.28.1",
                                    "product_id": "CSAFPID-5726738"
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "GStreamer"
                    }
                ],
                "category": "vendor",
                "name": "Open Source"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1317175",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:redhat:enterprise_linux:5::server"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/10",
                                "product": {
                                    "name": "vers:rpm/10",
                                    "product_id": "CSAFPID-2858634",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:redhat:enterprise_linux:10"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux 10"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/6",
                                "product": {
                                    "name": "vers:rpm/6",
                                    "product_id": "CSAFPID-1439321",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:redhat:enterprise_linux:6"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux 6"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/7",
                                "product": {
                                    "name": "vers:rpm/7",
                                    "product_id": "CSAFPID-1439315",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:redhat:enterprise_linux:7"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux 7"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/8",
                                "product": {
                                    "name": "vers:rpm/8",
                                    "product_id": "CSAFPID-1439317",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/a:redhat:enterprise_linux:8"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux 8"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:rpm/9",
                                "product": {
                                    "name": "vers:rpm/9",
                                    "product_id": "CSAFPID-1439319",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:redhat:enterprise_linux:9"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Red Hat Enterprise Linux 9"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/10.1",
                                        "product": {
                                            "name": "vers:rpm/10.1",
                                            "product_id": "CSAFPID-5180289",
                                            "product_identification_helper": {
                                                "cpe": "cpe:/o:redhat:enterprise_linux:10.1"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "Red Hat Enterprise Linux AppStream (v. 10)"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/10.1",
                                        "product": {
                                            "name": "vers:rpm/10.1",
                                            "product_id": "CSAFPID-5180271",
                                            "product_identification_helper": {
                                                "cpe": "cpe:/o:redhat:enterprise_linux:10.1"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "Red Hat Enterprise Linux CodeReady Linux Builder (v. 10)"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-3.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-3.el10_1",
                                            "product_id": "CSAFPID-5969745",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-bad-free@1.24.11-3.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-bad-free"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-3.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-3.el10_1",
                                            "product_id": "CSAFPID-5969746",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-bad-free-debuginfo@1.24.11-3.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-bad-free-debuginfo"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-3.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-3.el10_1",
                                            "product_id": "CSAFPID-5969747",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-bad-free-debugsource@1.24.11-3.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-bad-free-debugsource"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-3.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-3.el10_1",
                                            "product_id": "CSAFPID-5969748",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-bad-free-devel@1.24.11-3.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-bad-free-devel"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-3.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-3.el10_1",
                                            "product_id": "CSAFPID-5969749",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-bad-free-libs@1.24.11-3.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-bad-free-libs"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-3.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-3.el10_1",
                                            "product_id": "CSAFPID-5969750",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-bad-free-libs-debuginfo@1.24.11-3.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-bad-free-libs-debuginfo"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-2.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-2.el10_1",
                                            "product_id": "CSAFPID-5969751",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-base@1.24.11-2.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-base"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-2.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-2.el10_1",
                                            "product_id": "CSAFPID-5969752",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-base-debuginfo@1.24.11-2.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-base-debuginfo"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-2.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-2.el10_1",
                                            "product_id": "CSAFPID-5969753",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-base-debugsource@1.24.11-2.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-base-debugsource"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-2.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-2.el10_1",
                                            "product_id": "CSAFPID-5969754",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-base-devel@1.24.11-2.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-base-devel"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-2.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-2.el10_1",
                                            "product_id": "CSAFPID-5969755",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-base-tools@1.24.11-2.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-base-tools"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-2.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-2.el10_1",
                                            "product_id": "CSAFPID-5969756",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-base-tools-debuginfo@1.24.11-2.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-base-tools-debuginfo"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-2.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-2.el10_1",
                                            "product_id": "CSAFPID-5969757",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-good@1.24.11-2.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-good"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-2.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-2.el10_1",
                                            "product_id": "CSAFPID-5969758",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-good-debuginfo@1.24.11-2.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-good-debuginfo"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-2.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-2.el10_1",
                                            "product_id": "CSAFPID-5969759",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-good-debugsource@1.24.11-2.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-good-debugsource"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-2.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-2.el10_1",
                                            "product_id": "CSAFPID-5969760",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-good-gtk@1.24.11-2.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-good-gtk"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-2.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-2.el10_1",
                                            "product_id": "CSAFPID-5969761",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-good-gtk-debuginfo@1.24.11-2.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-good-gtk-debuginfo"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-2.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-2.el10_1",
                                            "product_id": "CSAFPID-5969762",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-good-qt6-debuginfo@1.24.11-2.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-good-qt6-debuginfo"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-2.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-2.el10_1",
                                            "product_id": "CSAFPID-5969763",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-ugly-free@1.24.11-2.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-ugly-free"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-2.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-2.el10_1",
                                            "product_id": "CSAFPID-5969764",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-ugly-free-debuginfo@1.24.11-2.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-ugly-free-debuginfo"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/1.24.11-2.el10_1",
                                        "product": {
                                            "name": "vers:rpm/1.24.11-2.el10_1",
                                            "product_id": "CSAFPID-5969765",
                                            "product_identification_helper": {
                                                "purl": "pkg:rpm/redhat/gstreamer1-plugins-ugly-free-debugsource@1.24.11-2.el10_1?arch=x86_64"
                                            }
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1-plugins-ugly-free-debugsource"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Enterprise Linux"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2861753"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Enterprise Linux 6"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2861754"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2861755"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Enterprise Linux 7"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2861752"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Enterprise Linux 10"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2861756"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1"
                            },
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2861757"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "mingw-gstreamer1"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Enterprise Linux 8"
                    },
                    {
                        "branches": [
                            {
                                "branches": [
                                    {
                                        "category": "product_version_range",
                                        "name": "vers:rpm/unknown",
                                        "product": {
                                            "name": "vers:rpm/unknown",
                                            "product_id": "CSAFPID-2861758"
                                        }
                                    }
                                ],
                                "category": "product_name",
                                "name": "gstreamer1"
                            }
                        ],
                        "category": "product_family",
                        "name": "Red Hat Enterprise Linux 9"
                    }
                ],
                "category": "vendor",
                "name": "Red Hat"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1317176",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:suse:opensuse:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "SUSE openSUSE"
                    },
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1317174",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:suse:suse_linux:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "SuSE Linux"
                    }
                ],
                "category": "vendor",
                "name": "SUSE"
            },
            {
                "branches": [
                    {
                        "branches": [
                            {
                                "category": "product_version_range",
                                "name": "vers:unknown/unknown",
                                "product": {
                                    "name": "vers:unknown/unknown",
                                    "product_id": "CSAFPID-1330299",
                                    "product_identification_helper": {
                                        "cpe": "cpe:/o:canonical:ubuntu_linux:-"
                                    }
                                }
                            }
                        ],
                        "category": "product_name",
                        "name": "Ubuntu Linux"
                    }
                ],
                "category": "vendor",
                "name": "Ubuntu"
            }
        ]
    },
    "vulnerabilities": [
        {
            "cve": "CVE-2026-2923",
            "cwe": {
                "id": "CWE-787",
                "name": "Out-of-bounds Write"
            },
            "notes": [
                {
                    "category": "description",
                    "text": "GStreamer DVB Subtitles Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to exploit this vulnerability but attack vectors may vary depending on the implementation.\n\nThe specific flaw exists within the handling of coordinates. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-28838.",
                    "title": "cveprojectv5 - https://www.cve.org/CVERecord?id=CVE-2026-2923"
                },
                {
                    "category": "description",
                    "text": "GStreamer DVB Subtitles Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to exploit this vulnerability but attack vectors may vary depending on the implementation.  The specific flaw exists within the handling of coordinates. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-28838.",
                    "title": "debian - https://security-tracker.debian.org/tracker/CVE-2026-2923"
                },
                {
                    "category": "description",
                    "text": "GStreamer DVB Subtitles Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GStreamer. Interaction with this library is required to exploit this vulnerability but attack vectors may vary depending on the implementation.\n\nThe specific flaw exists within the handling of coordinates. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-28838.",
                    "title": "nvd - https://nvd.nist.gov/vuln/detail/CVE-2026-2923"
                },
                {
                    "category": "description",
                    "text": "A flaw was found in GStreamer. This out-of-bounds write vulnerability in the DVB (Digital Video Broadcasting) Subtitles handling allows remote attackers to execute arbitrary code. The issue stems from improper validation of user-supplied coordinate data, which can lead to writing beyond the boundaries of an allocated memory buffer. Successful exploitation can result in arbitrary code execution within the context of the current process.\nIMPORTANT: A vulnerability in GStreamer's DVB subtitles component allows remote code execution due to an out-of-bounds write caused by improper validation of user-supplied data. This affects Red Hat Enterprise Linux versions that include GStreamer. Exploitation requires interaction with the GStreamer library, typically through processing malicious DVB subtitle streams.",
                    "title": "redhat - https://access.redhat.com/security/cve/CVE-2026-2923"
                },
                {
                    "category": "description",
                    "text": "A flaw was found in GStreamer. This out-of-bounds write vulnerability in the DVB (Digital Video Broadcasting) Subtitles handling allows remote attackers to execute arbitrary code. The issue stems from improper validation of user-supplied coordinate data, which can lead to writing beyond the boundaries of an allocated memory buffer. Successful exploitation can result in arbitrary code execution within the context of the current process.",
                    "title": "redhat - https://access.redhat.com/hydra/rest/securitydata/csaf/RHSA-2026:6259.json"
                },
                {
                    "category": "other",
                    "text": "0.00086",
                    "title": "EPSS"
                },
                {
                    "category": "other",
                    "text": "4.1",
                    "title": "NCSC Score"
                },
                {
                    "category": "other",
                    "text": "VENDOR FIX as product remediation category",
                    "title": "NCSC Score top increasing factors"
                },
                {
                    "category": "other",
                    "text": "Is related to (a version of) an uncommon product, The value of the most recent EPSS score, Is related to a product by vendor Debian, Is related to a product by vendor Open Source",
                    "title": "NCSC Score top decreasing factors"
                },
                {
                    "category": "details",
                    "text": "Severity: 3\n",
                    "title": "Vendor assessment"
                }
            ],
            "product_status": {
                "first_fixed": [
                    "CSAFPID-5983443"
                ],
                "fixed": [
                    "CSAFPID-5969745",
                    "CSAFPID-5969746",
                    "CSAFPID-5969747",
                    "CSAFPID-5969748",
                    "CSAFPID-5969749",
                    "CSAFPID-5969750",
                    "CSAFPID-5969751",
                    "CSAFPID-5969752",
                    "CSAFPID-5969753",
                    "CSAFPID-5969754",
                    "CSAFPID-5969755",
                    "CSAFPID-5969756",
                    "CSAFPID-5969757",
                    "CSAFPID-5969758",
                    "CSAFPID-5969759",
                    "CSAFPID-5969760",
                    "CSAFPID-5969761",
                    "CSAFPID-5969762",
                    "CSAFPID-5969763",
                    "CSAFPID-5969764",
                    "CSAFPID-5969765"
                ],
                "known_affected": [
                    "CSAFPID-5726736",
                    "CSAFPID-5726737",
                    "CSAFPID-5726738",
                    "CSAFPID-5726739",
                    "CSAFPID-2859886",
                    "CSAFPID-5826008",
                    "CSAFPID-1439315",
                    "CSAFPID-1439317",
                    "CSAFPID-1439319",
                    "CSAFPID-1439321",
                    "CSAFPID-2858634",
                    "CSAFPID-2861752",
                    "CSAFPID-2861753",
                    "CSAFPID-2861754",
                    "CSAFPID-2861755",
                    "CSAFPID-2861756",
                    "CSAFPID-2861757",
                    "CSAFPID-2861758",
                    "CSAFPID-5839045",
                    "CSAFPID-1295663",
                    "CSAFPID-1317174",
                    "CSAFPID-1317176",
                    "CSAFPID-1330299",
                    "CSAFPID-1317175"
                ]
            },
            "references": [
                {
                    "category": "external",
                    "summary": "Source - certbundde",
                    "url": "https://wid.cert-bund.de/.well-known/csaf/white/2026/wid-sec-w-2026-0525.json"
                },
                {
                    "category": "external",
                    "summary": "Source - debian",
                    "url": "https://security-tracker.debian.org/tracker/CVE-2026-2923"
                },
                {
                    "category": "external",
                    "summary": "Source - cveprojectv5",
                    "url": "https://www.cve.org/CVERecord?id=CVE-2026-2923"
                },
                {
                    "category": "external",
                    "summary": "Source raw - cveprojectv5",
                    "url": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/2xxx/CVE-2026-2923.json"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?cve=CVE-2026-2923"
                },
                {
                    "category": "external",
                    "summary": "Source raw - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=0"
                },
                {
                    "category": "external",
                    "summary": "Source - nvd",
                    "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2923"
                },
                {
                    "category": "external",
                    "summary": "Source raw - nvd",
                    "url": "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2026-2923"
                },
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-2923"
                },
                {
                    "category": "external",
                    "summary": "Source raw - redhat",
                    "url": "https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2026-2923.json"
                },
                {
                    "category": "external",
                    "summary": "Source - first",
                    "url": "https://api.first.org/data/v1/epss?limit=10000&offset=0"
                },
                {
                    "category": "external",
                    "summary": "Source - redhat",
                    "url": "https://access.redhat.com/hydra/rest/securitydata/csaf/RHSA-2026:6259.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://wid.cert-bund.de/.well-known/csaf/white/2026/wid-sec-w-2026-0525.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-0525"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://gstreamer.freedesktop.org/security/sa-2026-0001.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://gstreamer.freedesktop.org/security/sa-2026-0002.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://gstreamer.freedesktop.org/security/sa-2026-0003.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://gstreamer.freedesktop.org/security/sa-2026-0004.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://gstreamer.freedesktop.org/security/sa-2026-0005.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://gstreamer.freedesktop.org/security/sa-2026-0006.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://gstreamer.freedesktop.org/security/sa-2026-0007.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://gstreamer.freedesktop.org/security/sa-2026-0008.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://gstreamer.freedesktop.org/security/sa-2026-0009.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://gstreamer.freedesktop.org/security/sa-2026-0010.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://gstreamer.freedesktop.org/security/sa-2026-0011.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://gstreamer.freedesktop.org/security/sa-2026-0012.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; nvd; redhat",
                    "url": "https://www.zerodayinitiative.com/advisories/ZDI-26-161/"
                },
                {
                    "category": "external",
                    "summary": "Reference - cveprojectv5; nvd; redhat",
                    "url": "https://gitlab.freedesktop.org/gstreamer/gstreamer/-/commit/3b8253f447bcc9831dbf643d2c69b205fedbe086"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://www.cve.org/CVERecord?id=CVE-2026-2923"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-2923"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.debian.org/debian-security-announce/2026/msg00076.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.suse.com/pipermail/sle-security-updates/2026-March/024897.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.debian.org/debian-lts-announce/2026/03/msg00018.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/ZDKDIN2WNGBRBR3WLPM2DKIOENYVBTHM/"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://lists.debian.org/debian-lts-announce/2026/03/msg00019.html"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://ubuntu.com/security/notices/USN-8130-1"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://ubuntu.com/security/notices/USN-8131-1"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/cve/CVE-2026-2923"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2447503"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde; redhat",
                    "url": "https://access.redhat.com/errata/RHSA-2026:6259"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://access.redhat.com/security/updates/classification/#important"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2447490"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2447492"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2447495"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2447496"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2447498"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2447500"
                },
                {
                    "category": "external",
                    "summary": "Reference - redhat",
                    "url": "https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_6259.json"
                },
                {
                    "category": "external",
                    "summary": "Reference - certbundde",
                    "url": "https://access.redhat.com/errata/RHSA-2026:6300"
                }
            ],
            "remediations": [
                {
                    "category": "mitigation",
                    "details": "To mitigate this issue, avoid processing untrusted DVB subtitle streams with GStreamer. Limiting exposure to untrusted content can reduce the risk of exploitation.",
                    "product_ids": [
                        "CSAFPID-1439315",
                        "CSAFPID-1439317",
                        "CSAFPID-1439319",
                        "CSAFPID-1439321",
                        "CSAFPID-2858634",
                        "CSAFPID-2861752",
                        "CSAFPID-2861753",
                        "CSAFPID-2861754",
                        "CSAFPID-2861755",
                        "CSAFPID-2861756",
                        "CSAFPID-2861757",
                        "CSAFPID-2861758"
                    ]
                },
                {
                    "category": "vendor_fix",
                    "details": "For details on how to apply this update, which includes the changes described in this advisory, refer to:\n\nhttps://access.redhat.com/articles/11258",
                    "product_ids": [
                        "CSAFPID-5180271",
                        "CSAFPID-5180289",
                        "CSAFPID-5969745",
                        "CSAFPID-5969746",
                        "CSAFPID-5969747",
                        "CSAFPID-5969748",
                        "CSAFPID-5969749",
                        "CSAFPID-5969750",
                        "CSAFPID-5969751",
                        "CSAFPID-5969752",
                        "CSAFPID-5969753",
                        "CSAFPID-5969754",
                        "CSAFPID-5969755",
                        "CSAFPID-5969756",
                        "CSAFPID-5969757",
                        "CSAFPID-5969758",
                        "CSAFPID-5969759",
                        "CSAFPID-5969760",
                        "CSAFPID-5969761",
                        "CSAFPID-5969762",
                        "CSAFPID-5969763",
                        "CSAFPID-5969764",
                        "CSAFPID-5969765"
                    ],
                    "restart_required": {
                        "category": "none"
                    },
                    "url": "https://access.redhat.com/errata/RHSA-2026:6259"
                },
                {
                    "category": "workaround",
                    "details": "To mitigate this issue, avoid processing untrusted DVB subtitle streams with GStreamer. Limiting exposure to untrusted content can reduce the risk of exploitation.",
                    "product_ids": [
                        "CSAFPID-5180271",
                        "CSAFPID-5180289",
                        "CSAFPID-5969745",
                        "CSAFPID-5969746",
                        "CSAFPID-5969747",
                        "CSAFPID-5969748",
                        "CSAFPID-5969749",
                        "CSAFPID-5969750",
                        "CSAFPID-5969751",
                        "CSAFPID-5969752",
                        "CSAFPID-5969753",
                        "CSAFPID-5969754",
                        "CSAFPID-5969755",
                        "CSAFPID-5969756",
                        "CSAFPID-5969757",
                        "CSAFPID-5969758",
                        "CSAFPID-5969759",
                        "CSAFPID-5969760",
                        "CSAFPID-5969761",
                        "CSAFPID-5969762",
                        "CSAFPID-5969763",
                        "CSAFPID-5969764",
                        "CSAFPID-5969765"
                    ]
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.0",
                        "vectorString": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
                        "baseScore": 7.8,
                        "baseSeverity": "HIGH"
                    },
                    "products": [
                        "CSAFPID-1295663",
                        "CSAFPID-1317174",
                        "CSAFPID-1317175",
                        "CSAFPID-1317176",
                        "CSAFPID-1330299",
                        "CSAFPID-1439315",
                        "CSAFPID-1439317",
                        "CSAFPID-1439319",
                        "CSAFPID-1439321",
                        "CSAFPID-2858634",
                        "CSAFPID-2859886",
                        "CSAFPID-2861752",
                        "CSAFPID-2861753",
                        "CSAFPID-2861754",
                        "CSAFPID-2861755",
                        "CSAFPID-2861756",
                        "CSAFPID-2861757",
                        "CSAFPID-2861758",
                        "CSAFPID-5726736",
                        "CSAFPID-5726737",
                        "CSAFPID-5726738",
                        "CSAFPID-5726739",
                        "CSAFPID-5826008",
                        "CSAFPID-5839045"
                    ]
                }
            ],
            "title": "CVE-2026-2923"
        }
    ]
}