CEWE PHOTO IMPORTER 6.4.3 contains a denial of service vulnerability that allows local attackers to crash the application by importing a specially crafted image file. Attackers can create a malformed JPG file with an oversized buffer and trigger the crash through the import functionality during the image processing workflow.
Metrics
Affected Vendors & Products
References
History
Sat, 21 Mar 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | CEWE PHOTO IMPORTER 6.4.3 contains a denial of service vulnerability that allows local attackers to crash the application by importing a specially crafted image file. Attackers can create a malformed JPG file with an oversized buffer and trigger the crash through the import functionality during the image processing workflow. | |
| Title | CEWE PHOTO IMPORTER 6.4.3 Denial of Service via Malformed Image | |
| Weaknesses | CWE-226 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-03-21T12:46:55.830Z
Reserved: 2026-03-21T12:29:12.781Z
Link: CVE-2019-25553
No data.
Status : Received
Published: 2026-03-21T13:16:17.680
Modified: 2026-03-21T13:16:17.680
Link: CVE-2019-25553
No data.
OpenCVE Enrichment
No data.