CVE-2026-8158: Axis Communications Ab Axis File Player
Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.
The Signed Video Framework contained a buffer overflow issue which could lead the application using this framework to crash. The issue exclusively affects the tools used for the validation of signed content. The AXIS OS device's signed video functionality remains unaffected.
Affected products
- Axis Communications Ab Axis File Player: before 3.1.9.0 (fixed in 3.1.9.0)
- Axis Communications Ab Signed Media Verifier: before 1.0.2 (fixed in 1.0.2)
- Axis Communications Ab Signed Video Framework: before 2.3.5 (fixed in 2.3.5)
Published 2026-08-11. Last modified 2026-09-03.