CVE-2025-6663

GStreamer

Overview

AI description

Automated description summarized from trusted sources.

CVE-2025-6663 is a vulnerability in GStreamer, specifically within the parsing of H266 SEI messages. The vulnerability is due to the lack of proper validation of the length of user-supplied data before copying it to a fixed-length stack-based buffer. This flaw can be exploited by remote attackers to execute arbitrary code on systems with affected installations of GStreamer. Exploitation requires interaction with the GStreamer library, though attack vectors could vary depending on the implementation.

Description
-

Social media

Hype score
Not currently trending

References

Sources include official advisories and independent security research.