Impact
A stack buffer overrun in CatchPulse can be leveraged to exhaust system resources, resulting in a denial‑of‑service condition. This overflow bypasses input bounds checks and matches CWE‑119, causing the application to crash or become unresponsive.
Affected Systems
The vulnerability affects SecureAge’s CatchPulse product. No specific versions are listed in the CVE record, so all installations of CatchPulse remain potentially vulnerable until a patch is applied.
Risk and Exploitability
The CVSS base score of 5.5 categorizes the flaw as medium. EPSS information is not available, and the issue is not in the CISA KEV catalog. Because no attack vector is specified, it is reasonable to assume remote exploitation via crafted input, but the exact exploitation pathway remains undocumented. The risk of widespread exploitation is moderate pending additional intelligence.
OpenCVE Enrichment