CVE-2026-0149EPSS p19.1%

CVE-2026-0149CVE-2026-0149

Description

In RtpSession::rtpSendRtcpPacket, there is a possible OOB write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

Scoring

EPSS0.29% probability of exploitation · percentile 19.1% · 2026-10-05T12:00:23Z
Last modified2026-06-16
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.