VulnSea

mediainfolib vulnerabilities

CVEs whose affected-version data names the mediainfolib package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

4 CVEsRSS

CVE-2026-25713High· 7.8
4mo ago

A heap-based buffer overflow vulnerability exists in the ID3v2 parsing functionality of MediaInfoLib (version(s): 26.01)

A heap-based buffer overflow vulnerability exists in the ID3v2 parsing functionality of MediaInfoLib (version(s): 26.01). A specially crafted media file that contains ID3v2 tags can lead to arbitrary code execution. An attacker can provi…

Twilightmediaarea · mediainfolibEPSS 0.23%via NVD
CVE-2026-25104High· 7.8
4mo ago

A heap-based buffer overflow vulnerability exists in the LXF parsing functionality of MediaInfoLib (version(s): 26.01)

A heap-based buffer overflow vulnerability exists in the LXF parsing functionality of MediaInfoLib (version(s): 26.01). A specially crafted .lxf file can lead to arbitrary code execution. An attacker can provide a malicious file to trigg…

Twilightmediaarea · mediainfolibEPSS 0.23%via NVD
CVE-2026-28764High· 7.8
4mo ago

A heap-based buffer overflow vulnerability exists in the LXF element parsing functionality of MediaInfoLib (version(s): 26.01)

A heap-based buffer overflow vulnerability exists in the LXF element parsing functionality of MediaInfoLib (version(s): 26.01). A specially crafted .lxf file can lead to arbitrary code execution. An attacker can provide a malicious file …

Twilightmediaarea · mediainfolibEPSS 0.22%via NVD
CVE-2026-22554High· 7.8
4mo ago

A heap-based buffer overflow vulnerability exists in the Channel Splitting functionality of MediaInfoLib (version(s): 26.01)

A heap-based buffer overflow vulnerability exists in the Channel Splitting functionality of MediaInfoLib (version(s): 26.01). A specially crafted .riff file can lead to arbitrary code execution. An attacker can provide a malicious file t…

Twilightmediaarea · mediainfolibEPSS 0.24%via NVD
mediainfolib vulnerabilities (CVEs) · VulnSea