CVE-2019-25328: XnConvert 1.82 - Denial of Service
Published Feb 12, 2026
·Updated
XnConvert 1.82 contains a denial of service vulnerability in its registration code input field that allows attackers to crash the application. Attackers can generate a 9000-byte buffer of repeated characters and paste it into the registration code field to trigger an application crash.
Affected Software
1 affected component
XnView XnConvert
Event History
Feb 12, 2026
CVE Published
via MITRE·10:48 PM
Data Sourced
via MITRE·10:48 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·11:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-25328?
CVE-2019-25328 has been classified as a denial of service vulnerability.
2
How do I fix CVE-2019-25328?
To fix CVE-2019-25328, update XnConvert to the latest version provided by the vendor.
3
What is affected by CVE-2019-25328?
CVE-2019-25328 affects XnConvert version 1.82.
4
What kind of vulnerability is CVE-2019-25328?
CVE-2019-25328 is a denial of service vulnerability that allows attackers to crash the application.
5
How is CVE-2019-25328 exploited?
CVE-2019-25328 can be exploited by pasting a specially crafted 9000-byte buffer into the registration code field.