CVE-2026-51251
Severity CVSS v4.0:
Pending analysis
Type:
CWE-119
Buffer Errors
Publication date:
28/07/2026
Last modified:
28/07/2026
Description
Schreibfaul1 ESP32-audioI2S 3.4.5 has a buffer overflow vulnerability in the MP3Decoder::decode() function of the MP3 decoder due to missing size validation on untrusted mainDataBegin and nSlots values.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH



