-
Sat Aug 22 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 1.26.7-2.7
- Fix CVE-2026-18298 in gdkpixbufdec element
Resolves: RHEL-246557
-
Sat Aug 22 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 1.26.7-2.6
- Fix insufficient size validation in MRF file parsing in qtmoovrecover
(CVE-2026-18296)
Resolves: RHEL-246546
-
Thu Aug 13 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 1.26.7-2.5
- Fix CVE-2026-73434: out-of-bounds read in AVI demuxer vprp handling
Resolves: RHEL-239045
-
Thu Aug 13 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 1.26.7-2.4
- Fix out-of-bounds reads when parsing FUJIFILM strd metadata in AVI
files (CVE-2026-73433)
Resolves: RHEL-239062
-
Fri Aug 07 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 1.26.7-2.3
- Fix excessive memory allocation from malicious RTP fragmentation unit
packets in rtph264depay/rtph265depay (CVE-2026-18649)
Resolves: RHEL-224158
-
Fri Jul 31 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 1.26.7-2.2
- Fix integer overflow and bounds check vulnerabilities in uncompressed
video handling (CVE-2026-5056)
Resolves: RHEL-222333
-
Fri Jun 19 2026 RHEL Packaging Agent <redhat-ymir-agent@redhat.com> - 1.26.7-2.1
- Fix integer overflow vulnerabilities in wavpack decoder (CVE-2026-53705)
Resolves: RHEL-184480
-
Tue Mar 31 2026 Wim Taymans <wtaymans@redhat.com> - 1.26.7-2
- Add patch for CVE-2026-3083 and CVE-2026-3085
Resolves: RHEL-156133, RHEL-156112
-
Tue Nov 04 2025 Wim Taymans <wtaymans@redhat.com> - 1.26.7-1
- Update to 1.26.7
Resolves: RHEL-126057
-
Tue Jun 17 2025 Wim Taymans <wtaymans@redhat.com> - 1.26.2-1
- Update to 1.26.2
Resolves: DESKTOP-1858