Impact
A stack buffer overrun in CatchPulse can be exploited to exhaust system resources, leading to application crashes or unresponsiveness. The flaw bypasses input bounds checks and targets memory areas governed by CWE-121, resulting in a denial‑of‑service condition.
Affected Systems
The vulnerability affects SecureAge’s CatchPulse product. No specific versions are listed in the CVE record, so all installations of CatchPulse remain potentially vulnerable until a patch is applied.
Risk and Exploitability
The CVSS base score of 5.5 categorizes the flaw as medium. EPSS information is not available, and the issue is not in the CISA KEV catalog. Because no attack vector is specified, it is reasonable to infer that remote exploitation is possible via crafted input; however, the exact exploitation pathway remains undocumented. The risk of widespread exploitation is moderate pending additional intelligence.
OpenCVE Enrichment