CVE-2026-4151

high

Description

The vulnerability exists due to insufficient validation of user-supplied data in the parsing of ANI files, leading to an integer overflow that remote attackers can exploit to execute arbitrary code in the context of the current process.

Details

Source: Mitre, NVD

Published: 2026-03-26

Risk Information

CVSS v2

Base Score: 6.8

Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:P

Severity: Medium

CVSS v3

Base Score: 8.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Severity: High