Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 27 Mar 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Riverpast
Riverpast river Past Audio Converter |
|
| Vendors & Products |
Riverpast
Riverpast river Past Audio Converter |
Thu, 26 Mar 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 26 Mar 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | River Past Audio Converter 7.7.16 contains a local buffer overflow vulnerability in the activation code field that allows local attackers to crash the application by supplying an oversized input string. Attackers can paste a large payload of repeated characters into the 'E-Mail and Activation Code' field and click 'Activate' to trigger a denial of service condition. | |
| Title | River Past Audio Converter 7.7.16 Local Buffer Overflow DoS | |
| Weaknesses | CWE-787 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-03-26T18:24:51.477Z
Reserved: 2026-03-26T13:19:29.330Z
Link: CVE-2019-25649
Updated: 2026-03-26T18:12:11.818Z
Status : Awaiting Analysis
Published: 2026-03-26T14:16:06.477
Modified: 2026-03-26T15:13:15.790
Link: CVE-2019-25649
No data.
OpenCVE Enrichment
Updated: 2026-03-27T09:26:49Z