- What: Security update for gstreamer1-plugins-good
- Impact: Red Hat Enterprise Linux 7 users need to apply the update
Red Hat Product Errata RHSA-2026:49603 - Security Advisory Issued: 2026-08-03 Updated: 2026-08-03 RHSA-2026:49603 - Security Advisory Overview Updated Packages Synopsis Important: gstreamer1-plugins-good security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for gstreamer1-plugins-good is now available for Red Hat Enterprise Linux 7 Extended Lifecycle Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description GStreamer is a streaming media framework based on graphs of filters which operate on media data. The gstreamer1-plugins-good packages contain a collection of well-supported plug-ins of good quality and under the LGPL license. Security Fix(es): gstreamer1-plugins-good: GStreamer: Heap buffer overflow in WavPack decoder via integer overflow (CVE-2026-53705) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux Server - Extended Life Cycle Support 7 x86_64 Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7 s390x Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7 ppc64 Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7 ppc64le Fixes BZ - 2487615 - CVE-2026-53705 gstreamer1-plugins-good: GStreamer: Heap buffer overflow in WavPack decoder via integer overflow CVEs CVE-2026-53705 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux Server - Extended Life Cycle Support 7 SRPM gstreamer1-plugins-good-1.10.4-4.el7_9.1.src.rpm SHA-256: 1ee33b05b6c1da2971473ecb768e54b09842902589d56526497d72537ba0c25a x86_64 gstreamer1-plugins-good-1.10.4-4.el7_9.1.i686.rpm SHA-256: 91135a412b51e1540893f3438c64aa623089bcec8708ed47e4cd14aafefd4970 gstreamer1-plugins-good-1.10.4-4.el7_9.1.x86_64.rpm SHA-256: a8d895f662f3dd0dfdb8e6df503d3f8f5f75393ddbfbfdc9e892f761e9b6fea4 gstreamer1-plugins-good-debuginfo-1.10.4-4.el7_9.1.i686.rpm SHA-256: 0a966a92f2246c1e61b49263de5c20bc68ac3f3f8cee63a8e24f9a4bb820bdd3 gstreamer1-plugins-good-debuginfo-1.10.4-4.el7_9.1.x86_64.rpm SHA-256: 198eef5317fb16e95c191ddc6a83825916e351076227261f455a2c0e36d384d8 Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7 SRPM gstreamer1-plugins-good-1.10.4-4.el7_9.1.src.rpm SHA-256: 1ee33b05b6c1da2971473ecb768e54b09842902589d56526497d72537ba0c25a s390x gstreamer1-plugins-good-1.10.4-4.el7_9.1.s390.rpm SHA-256: 77e18dc5c89b1468151c79f318472ed3447c283c5053ea86a30f39d806f4aa40 gstreamer1-plugins-good-1.10.4-4.el7_9.1.s390x.rpm SHA-256: a92a873d561d4b1dafd7f5724288375efdf95960c580fff3c00483bd7b4eea06 gstreamer1-plugins-good-debuginfo-1.10.4-4.el7_9.1.s390.rpm SHA-256: 4e8b162eb0bc92f9cb7de5266dc455d0cc2809967b5fddf9f13493e2f87a58c0 gstreamer1-plugins-good-debuginfo-1.10.4-4.el7_9.1.s390x.rpm SHA-256: 9c23a5491ba5051332287e12c89f5ca11f4be2afa335c736ee0aedb6d96a4cec Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7 SRPM gstreamer1-plugins-good-1.10.4-4.el7_9.1.src.rpm SHA-256: 1ee33b05b6c1da2971473ecb768e54b09842902589d56526497d72537ba0c25a ppc64 gstreamer1-plugins-good-1.10.4-4.el7_9.1.ppc.rpm SHA-256: c51caeff078f8e37a231ec777a19b267ad20858bbc0b5e1bf6a21f5c0bffed41 gstreamer1-plugins-good-1.10.4-4.el7_9.1.ppc64.rpm SHA-256: d371457f5b95e20d0cd7ff7fbe0a4a200f7dbe23c4a191fee703f6a2784c7a85 gstreamer1-plugins-good-debuginfo-1.10.4-4.el7_9.1.ppc.rpm SHA-256: d5726647ddb736605af70b14b3bf2ebb816820e318b40c4cf9ea6f18d468c83f gstreamer1-plugins-good-debuginfo-1.10.4-4.el7_9.1.ppc64.rpm SHA-256: 1622024cdbf3f6993114cdbca867d23d5569f7815856b29acd66c8417023fcee Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7 SRPM gstreamer1-plugins-good-1.10.4-4.el7_9.1.src.rpm SHA-256: 1ee33b05b6c1da2971473ecb768e54b09842902589d56526497d72537ba0c25a ppc64le gstreamer1-plugins-good-1.10.4-4.el7_9.1.ppc64le.rpm SHA-256: 877a79cb8999a410acf8e131be34d3b3b64fbbd68fdd7db2ad2a4a449d1f0574 gstreamer1-plugins-good-debuginfo-1.10.4-4.el7_9.1.ppc64le.rpm SHA-256: 8f17814400a6d4405b7465cbfaa3176e4ebc0c86c6cc89172885d15da209f7a8 The Red Hat security contact is secalert@redhat.com . More contact details at https://access.redhat.com/security/team/contact/ .