CVE-2019-25558 describes a denial of service vulnerability (CWE-787) in Selfie Studio 2.17's Resize Image function. Local attackers can crash the application by supplying an excessively long string to the New Width or New Height fields, triggering a buffer overflow. This vulnerability is rated MEDIUM with a CVSS score of 6.2 (AV:L/AC:L/PR:N/UI:N). While described as a denial of service, the provided CVSS vector indicates a potential for high confidentiality impact (C:H) but no availability impact (A:N). There is no evidence of active exploitation (KEV: No, Hot List: Inactive), nor are public exploit codes available from sources like Metasploit or ExploitDB. Community discussion and media coverage for this CVE are currently absent.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2.17CPE matchmatch criteria | cpe:2.3:a:pixarra:selfie_studio:2.17:*:*:*:*:*:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.