Stack Buffer Overflow in GStreamer DTLS Plugin (CVE-2026-59692)
CVE-2026-59692 Published on July 9, 2026
Gstreamer: gstreamer: dtls certificate subject dn stack buffer overflow in openssl_verify_callback
A stack buffer overflow vulnerability was found in GStreamer's DTLS plugin. During a DTLS handshake, the peer certificate Subject Distinguished Name is printed into a fixed-size 2048-byte stack buffer without bounds checking. A remote unauthenticated attacker can send a certificate with an oversized Subject DN that exceeds the buffer, causing a stack buffer overflow and process crash, resulting in denial of service.
Vulnerability Analysis
CVE-2026-59692 is exploitable with network access, and does not require authorization privileges or user interaction. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have no impact on confidentiality and integrity, and a high impact on availability.
Timeline
Reported to Red Hat.
Made public. 2 days later.
Weakness Type
What is a Stack Overflow Vulnerability?
A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).
CVE-2026-59692 has been classified to as a Stack Overflow vulnerability or weakness.
Products Associated with CVE-2026-59692
Want to know whenever a new CVE is published for Red Hat products? stack.watch will email you.
Affected Versions
Red Hat Enterprise Linux 10:- Version 0:1.26.7-2.el10_2.6 and below * is unaffected.
- Version 0:1.24.11-3.el10_0.6 and below * is unaffected.
- Version 0:1.10.4-7.el7_9 and below * is unaffected.
- Version 0:1.16.1-9.el8_10.1 and below * is unaffected.
- Version 0:1.16.1-4.el8_6.4 and below * is unaffected.
- Version 0:1.16.1-4.el8_6.4 and below * is unaffected.
- Version 0:1.16.1-4.el8_8.4 and below * is unaffected.
- Version 0:1.16.1-4.el8_8.4 and below * is unaffected.
- Version 0:1.22.12-7.el9_8.3 and below * is unaffected.
- Version 0:1.22.1-6.el9_4.6 and below * is unaffected.
- Version 0:1.22.12-5.el9_6.6 and below * is unaffected.