PT-2026-6841 · Gnome+3 · Tracker-Miners+3

CVE-2026-1766

·

Published

2026-01-01

·

Updated

2026-06-30

CVSS v3.1

6.1

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H
Name of the Vulnerable Software and Affected Versions tracker-miners (affected versions not specified)
Description A flaw exists in tracker-miners related to the handling of malformed MP3 files. Specifically, the software incorrectly processes certain MP3 files, potentially leading to a denial of service due to a crash. There is also a possibility of arbitrary code execution. The issue is related to the GNOME localsearch MP3 Extractor and ID3v2.3 COMM tags.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-1766
OPENSUSE-SU-2026:10162-1
SUSE-SU-2026:0780-1
SUSE-SU-2026:2713-1
USN-8019-1

Affected Products

Id3V2.3
Linuxmint
Ubuntu
Tracker-Miners