Heap-based buffer overflow in ZoneMinder - #VU153357

 

Heap-based buffer overflow in ZoneMinder - #VU153357

Published: October 6, 2026


Vulnerability identifier: #VU153357
CSH Severity: Low
CVSS v4: 4.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N]
CVE-ID: N/A
CWE-ID: CWE-122
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to corrupt heap memory.

The vulnerability exists due to a heap-based buffer overflow in Image::ReadJpeg() when decoding a JPEG with dimensions larger than the configured monitor image. A local user can replace the monitored file with a specially crafted JPEG to corrupt heap memory.

Exploitation requires a File source-type monitor, which is not the default configuration, and write access to its source file. No ZoneMinder authentication is required.


Affected software

ZoneMinder

Remediation

Install security update from vendor's website.

ZoneMinder - addressed in versions 1.38.5, 1.38.6

External References

Related Security Bulletins