CVE-2019-25556

TwistedBrush Pro Studio 24.06 contains a denial of service vulnerability in the Resize Image function that allows local attackers to crash the application by supplying an excessively long buffer. Attackers can paste a malicious string into the New Width or New Height field to trigger a buffer overflow that causes the application to crash.
Configurations

Configuration 1 (hide)

cpe:2.3:a:pixarra:twistedbrush_pro_studio:24.06:*:*:*:*:*:*:*

History

24 Mar 2026, 16:33

Type Values Removed Values Added
First Time Pixarra twistedbrush Pro Studio
Pixarra
CPE cpe:2.3:a:pixarra:twistedbrush_pro_studio:24.06:*:*:*:*:*:*:*
References () http://www.pixarra.com - () http://www.pixarra.com - Product
References () https://www.exploit-db.com/exploits/46843 - () https://www.exploit-db.com/exploits/46843 - Exploit, Third Party Advisory, VDB Entry
References () https://www.vulncheck.com/advisories/twistedbrush-pro-studio-resize-image-denial-of-service - () https://www.vulncheck.com/advisories/twistedbrush-pro-studio-resize-image-denial-of-service - Third Party Advisory
Summary
  • (es) TwistedBrush Pro Studio 24.06 contiene una vulnerabilidad de denegación de servicio en la función Resize Image que permite a atacantes locales bloquear la aplicación al proporcionar un búfer excesivamente largo. Los atacantes pueden pegar una cadena maliciosa en el campo New Width o New Height para desencadenar un desbordamiento de búfer que provoca el bloqueo de la aplicación.

21 Mar 2026, 13:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-21 13:16

Updated : 2026-03-24 16:33


NVD link : CVE-2019-25556

Mitre link : CVE-2019-25556

CVE.ORG link : CVE-2019-25556


JSON object : View

Products Affected

pixarra

  • twistedbrush_pro_studio
CWE
CWE-787

Out-of-bounds Write