Severity: Medium
ID: 323656
File Name: unpatched_CVE_2026_12892.nasl
Version: 1.2
Type: Local
Agent: unix
Family: Misc.
Published: 6/29/2026
Updated: 6/29/2026
Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus
Risk Factor: Medium
Score: 4.0
Risk Factor: Medium
Base Score: 4.4
Temporal Score: 4.1
Vector: CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:L
Temporal Vector: CVSS:3.0/E:U/RL:U/RC:C
CVSS Score Source: CVE-2026-12892
CPE: cpe:/o:debian:debian_linux:11.0, cpe:/o:centos:centos:7, cpe:/o:redhat:enterprise_linux:6, cpe:/o:redhat:enterprise_linux:7, cpe:/o:redhat:enterprise_linux:8, p-cpe:/a:centos:centos:gstreamer-plugins-bad-free, p-cpe:/a:centos:centos:gstreamer-plugins-bad-free-devel, p-cpe:/a:centos:centos:gstreamer-plugins-bad-free-devel-docs, p-cpe:/a:centos:centos:gstreamer-plugins-bad-free-extras, p-cpe:/a:centos:centos:gstreamer1-plugins-bad-free, p-cpe:/a:centos:centos:gstreamer1-plugins-bad-free-devel, p-cpe:/a:centos:centos:gstreamer1-plugins-bad-free-gtk, p-cpe:/a:debian:debian_linux:gst-plugins-bad1.0, p-cpe:/a:redhat:enterprise_linux:gstreamer-plugins-bad-free, p-cpe:/a:redhat:enterprise_linux:gstreamer-plugins-bad-free-devel, p-cpe:/a:redhat:enterprise_linux:gstreamer-plugins-bad-free-devel-docs, p-cpe:/a:redhat:enterprise_linux:gstreamer1-plugins-bad-free, p-cpe:/a:redhat:enterprise_linux:gstreamer1-plugins-bad-free-devel, p-cpe:/a:redhat:enterprise_linux:gstreamer1-plugins-bad-free-gtk, p-cpe:/a:redhat:enterprise_linux:gstreamer-plugins-bad-free-extras, cpe:/o:centos:centos:8, cpe:/o:redhat:enterprise_linux:9, cpe:/o:debian:debian_linux:12.0, cpe:/o:debian:debian_linux:13.0, cpe:/o:redhat:enterprise_linux:10, p-cpe:/a:redhat:enterprise_linux:gstreamer1-plugins-bad-free-libs, cpe:/o:debian:debian_linux:14.0, p-cpe:/a:centos:centos:gstreamer1-plugins-bad-free-libs
Required KB Items: Host/local_checks_enabled, Host/cpu, global_settings/vendor_unpatched, Host/OS/identifier
Exploit Ease: No known exploits are available
Vulnerability Publication Date: 6/23/2026
CVE: CVE-2026-12892