🔐 CVE Alert

CVE-2019-25562

MEDIUM 5.5

jetAudio 8.1.7 Denial of Service via File Naming Buffer Overflow

CVSS Score
5.5
EPSS Score
0.0%
EPSS Percentile
0th

jetAudio 8.1.7 contains a buffer overflow vulnerability in the video converter component that allows local attackers to crash the application by supplying an oversized string in the File Naming field. Attackers can paste a malicious buffer of 512 bytes into the File Naming parameter and trigger the crash by clicking the Preview button, causing a denial of service.

CWE CWE-787
Vendor jetaudio
Product convert video jetaudio
Published Mar 21, 2026
Last Updated Mar 23, 2026
Stay Ahead of the Next One

Get instant alerts for jetaudio convert video jetaudio

Be the first to know when new medium vulnerabilities affecting jetaudio convert video jetaudio are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Attack Vector
Local
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High

Affected Versions

Jetaudio / Convert Video jetAudio
8.1.7

References

NVD ↗ CVE.org ↗ EPSS Data ↗
exploit-db.com: https://www.exploit-db.com/exploits/46818 jetaudio.com: http://www.jetaudio.com/ vulncheck.com: https://www.vulncheck.com/advisories/jetaudio-denial-of-service-via-file-naming-buffer-overflow

Credits

Alejandra Sánchez