CVE-2026-51272

Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.
CVSS

No CVSS.

References

No reference.

Configurations

No configuration.

History

31 Jul 2026, 15:16

Type Values Removed Values Added
Summary (en) In schreibfaul1 ESP32-audioI2S 3.4.5, a heap-based buffer overflow vulnerability exists in the latinToUTF8() character encoding conversion function. The function calculates required buffer size by simply doubling input length and reallocates ps_ptr heap buffer without strict boundary validation. Malicious oversized input can trigger insufficient buffer allocation and out-of-bounds write during Latin-1 to UTF-8 conversion, leading to code execution, information disclosure, denial of service or privilege escalation. (en) Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.
CWE CWE-122
References
  • {'url': 'https://gist.github.com/programmervuln/5d1388bb85dfaf2e7e2700c5a2bceef5', 'source': '134c704f-9b21-4f2e-91b3-4a467353bcc0'}
  • {'url': 'https://github.com/schreibfaul1/ESP32-audioI2S/blob/master/src/Audio.cpp', 'source': 'cve@mitre.org'}
CVSS v2 : unknown
v3 : 9.8
v2 : unknown
v3 : unknown

30 Jul 2026, 20:17

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CWE CWE-122
References () https://gist.github.com/programmervuln/5d1388bb85dfaf2e7e2700c5a2bceef5 - () https://gist.github.com/programmervuln/5d1388bb85dfaf2e7e2700c5a2bceef5 -

30 Jul 2026, 19:18

Type Values Removed Values Added
New CVE

Information

Published : 2026-07-30 19:18

Updated : 2026-07-31 15:16


NVD link : CVE-2026-51272

Mitre link : CVE-2026-51272

CVE.ORG link : CVE-2026-51272


JSON object : View

Products Affected

No product.

CWE

No CWE.