Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Breakingbad6

#18278of 53,624
14.9Total CVSS
Vulnerabilities · 2
High
2
PT-2026-30592
7.1
2026-04-06
Libtheora · Libtheora · CVE-2026-5673
**Name of the Vulnerable Software and Affected Versions** libtheora (affected versions not specified) **Description** A heap-based out-of-bounds read flaw exists in libtheora's AVI (Audio Video Interleave) parser, specifically within the `avi parse input file()` function. A local attacker could exploit this by crafting a malicious AVI file with a truncated header sub-chunk. This could result in a denial-of-service (application crash) or potential information leakage from the heap. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2026-25617
7.8
2026-01-01
Libexif · Libexif · CVE-2026-32775
**Name of the Vulnerable Software and Affected Versions** libexif versions through 0.6.25 **Description** The software contains a flaw in decoding MakerNotes. Specifically, an integer underflow occurs within the `exif mnote data get value` function when it receives a size of 0, leading to a buffer overwrite. **Recommendations** Update to a version of libexif newer than 0.6.25.