VYPR

webrtcbin

by Gstreamer

CVEs (1)

  • CVE-2026-14935LowJul 7, 2026
    risk 0.24cvss 3.7epss 0.00

    A logic vulnerability was found in GStreamer's webrtcbin component. The _check_sdp_crypto() function contains an inverted boolean condition that causes it to accept remote SDP offers or answers that lack the required a=fingerprint attribute, while incorrectly rejecting those…