CVE-2026-103109
7.7
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:H/A:H
Summary
Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper input validation in the media implementation that allows a remote attacker to trigger memory corruption or a software abort resulting in a denial of service. A crafted media stream may result in a controlled abort during processing, and has the potential to achieve memory corruption.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Pexip | Infinity | 0 < 38.2.0 | affected |
| Pexip | Infinity | 39.0.0 | affected |
| Pexip | Infinity | 39.1.0 | affected |
| Pexip | Infinity | 40.0.0 | affected |
Weaknesses
- CWE-787: CWE-787 Out-of-bounds Write
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.