PT-2025-18342 · Gstreamer · Gstreamer

Published

2025-04-30

·

Updated

2025-08-13

·

CVE-2025-2759

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions GStreamer (affected versions not specified)
Description This issue allows local attackers to escalate privileges on affected installations. An attacker must first obtain the ability to execute low-privileged code on the target system. The flaw exists within the product installer due to incorrect permissions on folders, allowing an attacker to escalate privileges and execute arbitrary code in the context of a target user.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Incorrect Permission

Weakness Enumeration

Related Identifiers

BDU:2025-13238
CVE-2025-2759
ZDI-25-268

Affected Products

Gstreamer