{"id":"CVE-2025-26790","title":"Withsecure Atlant with Capricorn engine before 2025-01-20_02 allows a Remote Denial of Service via an out-of-bounds memory read during processing of a document file by the antivirus engine.","summary":"Withsecure Atlant with Capricorn engine before 2025-01-20_02 allows a Remote Denial of Service via an out-of-bounds memory read during processing of a document file by the antivirus engine.","severity":"low","cvss":3.7,"cvssVector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L","cwe":["CWE-125"],"vendor":"WithSecure","product":"Atlant","affected":["Atlant < Capricorn 2025-01-20_02"],"published":"2026-09-14","updated":"2026-09-22","sourceUpdated":"2026-09-22T20:00:03.713","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-26790","references":[{"url":"https://Withsecure.com","label":"cve@mitre.org"},{"url":"https://support.withsecure.com/en/security-advisories/cve-2025-26790/","label":"cve@mitre.org"}],"tags":["nvd","cve.org"],"epss":0.00332,"epssPercentile":0.2668,"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"partial","timestamp":"2026-09-14T14:56:25.960768Z"},"ingestedAt":"2026-09-14T15:23:07.465Z","slug":"CVE-2025-26790","body":"## Overview\n\nWithsecure Atlant with Capricorn engine before 2025-01-20_02 allows a Remote Denial of Service via an out-of-bounds memory read during processing of a document file by the antivirus engine.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":20,"depthScoreParts":{"impact":20.4,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}