CVE-2026-8158 PUBLISHED

Assigner: Axis
Reserved: 08.05.2026 Published: 11.08.2026 Updated: 11.08.2026

The Signed Video Framework contained a  buffer overflow issue

which could lead the application using this framework to crash. The issue exclusively affects the tools used for the validation of signed content. The AXIS OS device's signed video functionality remains unaffected.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:H
CVSS Score: 5.3

Product Status

Vendor Axis Communications AB
Product Signed Video Framework
Versions Default: unaffected
  • affected from 0 to 2.3.5 (excl.)
Vendor Axis Communications AB
Product Signed media verifier
Versions Default: unaffected
  • affected from 0 to 1.0.2 (excl.)
Vendor Axis Communications AB
Product Axis File Player
Versions Default: unaffected
  • affected from 0 to 3.1.9.0 (excl.)

Credits

  • Anandppatil4383 finder

References

Problem Types

  • https://cwe.mitre.org/data/definitions/122.html