CVE-2026-103104: Input Validation
Published Sep 30, 2026
·Updated
Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper input validation in the media implementation which allows a remote attacker to trigger a software abort resulting in a denial of service.
Affected Software
1 affected component
Pexip Infinity<38.2, =39.0, =39.1, =40.0
Event History
Sep 30, 2026
CVE Published
via MITRE·02:35 AM
Data Sourced
via MITRE·02:35 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Which deployments are affected?
Pexip Infinity releases before 38.2 and releases 39.0, 39.1, and 40.0 are affected. The provided information does not identify any configuration prerequisite.
2
Does exploitation require authentication or user interaction?
No. The listed vector indicates network-based exploitation with low attack complexity, no privileges required, and no user interaction required.
3
What is the practical impact of a successful attack?
A remote attacker can trigger a software abort in the media implementation, causing a denial of service. No confidentiality or integrity impact is listed.