{"id":"CVE-2026-79113","title":"OpenAPV before 1.1.1.0 has a read_bitstream heap-based buffer overflow.","summary":"OpenAPV before 1.1.1.0 has a read_bitstream heap-based buffer overflow.","severity":"medium","cvss":5.1,"cvssVector":"CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N","cwe":["CWE-190"],"vendor":"aswf","product":"OpenAPV","affected":["OpenAPV < 1.1.1.0"],"published":"2026-10-03","updated":"2026-10-03","sourceUpdated":"2026-10-03T01:17:25.287","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-79113","references":[{"url":"https://aswf.io","label":"cve@mitre.org"},{"url":"https://github.com/AcademySoftwareFoundation/openapv/commit/b5cc54bc786040ba3ac54020e7320e0add51e107","label":"cve@mitre.org"},{"url":"https://github.com/AcademySoftwareFoundation/openapv/compare/v0.3.0.0...v1.1.1.0","label":"cve@mitre.org"},{"url":"https://github.com/AcademySoftwareFoundation/openapv/issues/219","label":"cve@mitre.org"},{"url":"https://github.com/AcademySoftwareFoundation/openapv/pull/226","label":"cve@mitre.org"},{"url":"https://github.com/AcademySoftwareFoundation/openapv/tree/kp_handling_issues_20260713","label":"cve@mitre.org"}],"tags":["nvd","cve.org"],"cvssSource":"cna","ingestedAt":"2026-10-03T01:36:48.351Z","slug":"CVE-2026-79113","body":"## Overview\n\nOpenAPV before 1.1.1.0 has a read_bitstream heap-based buffer overflow.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":28,"depthScoreParts":{"impact":28.1,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}