CVE-2026-88290: GeoVision Inc Gv-LPC2011/LPC2211
High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.
GeoVision GV-LPC2211 V1.14 (260903) allows unauthenticated clients to declare unbounded VLSVR frame lengths and indefinitely delay blocking receives, allowing remote exhaustion of memory, connection, and worker resources.
Affected products
- GeoVision Inc Gv-LPC2011/LPC2211: version 1.14 20260903 only
Published 2026-09-10. Last modified 2026-09-10.