CVE-2019-25328
Awaiting Analysis Awaiting Analysis - Queue

Denial of Service via Buffer Overflow in XnConvert

Vulnerability report for CVE-2019-25328, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-02-12

Last updated on: 2026-02-13

Assigner: VulnCheck

Description

XnConvert 1.82 contains a denial of service vulnerability in its registration code input field that allows attackers to crash the application. Attackers can generate a 9000-byte buffer of repeated characters and paste it into the registration code field to trigger an application crash.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-02-12
Last Modified
2026-02-13
Generated
2026-07-26
AI Q&A
2026-02-13
EPSS Evaluated
2026-07-25
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
xnconvert xnconvert 1.82

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-121 A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

XnConvert 1.82 contains a denial of service vulnerability in its registration code input field. Attackers can exploit this by generating a 9000-byte buffer of repeated characters and pasting it into the registration code field, which causes the application to crash.

Detection Guidance

I don't know

Impact Analysis

This vulnerability can cause the XnConvert application to crash when the registration code input field is exploited with a large buffer of repeated characters. This results in a denial of service, potentially interrupting your ability to use the application.

Compliance Impact

I don't know

Mitigation Strategies

I don't know

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2019-25328. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart