Stack-based Buffer Overflow in vgmstream Affects Audio Processing Capabilities
CVE-2026-86514
Key Information:
Badges
What is CVE-2026-86514?
A vulnerability has been detected in vgmstream, specifically in versions up to r2117, affecting the sscanf function within the txth.c component. This weakness may allow attackers to manipulate data and initiate a stack-based buffer overflow remotely. The potential exploitation of this vulnerability poses significant risks, as public exploit methods have been released. To mitigate this threat, the deployment of a specific patch (4669d37a6af94866f6f0628678f9f90d46954e8b) is recommended.
Affected Version(s)
vgmstream r2117
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
