CVE-2026-33361: Meari weak XOR obfuscation
In Meari IoT SDK image handling (libmrplayer.so) as observed in CloudEdge 5.5.0 (build 220), Arenti 1.8.1 (build 220), and related white-label apps (<= 1.8.x), baby monitor ".jpgx3" files use reversible XOR over only the first 1024 bytes with a predictable key derivation model.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-33361?
CVE-2026-33361 has been classified as a significant vulnerability due to its exploits in weak XOR obfuscation that can potentially expose sensitive image files.
How does CVE-2026-33361 impact Meari products?
CVE-2026-33361 affects Meari IoT SDK, CloudEdge 5.5.0, Arenti 1.8.1, and associated white-label applications by allowing reversible access to obfuscated image files.
How do I fix CVE-2026-33361?
To fix CVE-2026-33361, it is recommended to update to the latest versions of affected software that address this vulnerability.
What are the affected versions for CVE-2026-33361?
CVE-2026-33361 affects Meari CloudEdge 5.5.0 (build 220), Arenti 1.8.1 (build 220), and white-label apps with versions up to 1.8.x.
Is CVE-2026-33361 applicable to third-party applications?
Yes, CVE-2026-33361 may also impact third-party applications that are based on the Meari IoT SDK or utilize its image handling capabilities.