Impact
The vulnerability is a buffer overflow in memono Notepad 4.2 that lets an attacker crash the application by inserting an excessively long string into a note. Once triggered, the app terminates unexpectedly, disrupting the user’s ability to create or edit notes. This is a local denial‑of‑service flaw that could be exploited by anyone who can paste content into the Notepad UI, but it does not compromise data confidentiality or integrity.
Affected Systems
The flaw affects the memono Notepad application version 4.2 on iOS devices. No other product or version information is provided in the CVE data.
Risk and Exploitability
The CVSS score of 8.7 reflects the high impact of the crash, while the lack of an EPSS score indicates that no public exploit rate data is available. The vulnerability is not listed in the CISA KEV catalog, suggesting no widely known active exploitation. It can most likely be triggered by a simple paste action in the notarized iOS app, so an attacker needs no special privileges. The risk remains high for users who run the vulnerable version, and any device that can run the iOS app is potentially exposed.
OpenCVE Enrichment