RHSA-2025:8201: Important: gstreamer1-plugins-bad-free security update
GStreamer is a streaming media framework based on graphs of filters which operate on media data. The gstreamer1-plugins-bad-free package contains a collection of plug-ins for GStreamer.<br>Security Fix(es):<br><li> GStreamer: GStreamer H265 Codec Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability (CVE-2025-3887)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Other sources
Important: gstreamer1-plugins-bad-free security update
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:8201?
The severity of RHSA-2025:8201 is classified as important.
How do I fix RHSA-2025:8201?
To fix RHSA-2025:8201, you need to update the gstreamer1-plugins-bad-free package to the latest version available in your repository.
Which software is affected by RHSA-2025:8201?
RHSA-2025:8201 affects multiple Red Hat products including Red Hat Enterprise Linux 8 and various CodeReady Linux Builder versions.
Is there a workaround for RHSA-2025:8201?
There are no official workarounds for RHSA-2025:8201; updating the affected packages is recommended.
When was RHSA-2025:8201 released?
RHSA-2025:8201 was released on March 10, 2025.