CVE-2026-103100: Input Validation
Published Sep 30, 2026
·Updated
Pexip Infinity before 40.1 is affected by improper input validation in the signaling implementation that allows a malicious attacker to trigger a software abort resulting in a denial of service.
Affected Software
1 affected component
Pexip Infinity<40.1
Event History
Sep 30, 2026
CVE Published
via MITRE·02:17 AM
Data Sourced
via MITRE·02:17 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The vulnerability is remotely exploitable and requires no privileges or user interaction. A malicious attacker can trigger a software abort through the signaling implementation.
2
What is the impact of a successful attack?
Successful exploitation causes a denial of service by triggering a software abort. The supplied severity vector indicates no confidentiality or integrity impact.
3
Which deployments need remediation?
Pexip Infinity versions before 40.1 are affected. Upgrade to version 40.1 or later if available through your normal Pexip update process.