CVE-2026-105250
Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.
A security vulnerability has been detected in vgmstream up to r2117. Affected is the function decode_ms_ima of the file src/coding/ima_decoder.c of the component Microsoft IMA Decoder. Such manipulation leads to divide by zero. The attack can be executed remotely.
Published 2026-10-05. Last modified 2026-10-06.