CVE-2026-92879EPSS p46.5%
CVE-2026-92879CVE-2026-92879
Description
A security flaw has been discovered in vgmstream up to r2117. This issue affects the function parse_mus of the file src/meta/mus_acm.c. The manipulation results in resource consumption. The attack may be launched remotely. The patch is identified as ae37662ad626254ddd96ad69ac263792d7a92024. Applying a patch is advised to resolve this issue.
Scoring
| CVSS | 4.3 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L |
| EPSS | 0.59% probability of exploitation · percentile 46.5% · 2026-10-05T12:00:23Z |
| Last modified | 2026-09-17 |