CVE-2023-53966

CRITICAL

SOUND4 LinkAndShare Transmitter 1.1.2 - Memory Corruption

Title source: llm

Description

SOUND4 LinkAndShare Transmitter 1.1.2 contains a format string vulnerability that allows attackers to trigger memory stack overflows through maliciously crafted environment variables. Attackers can manipulate the username environment variable with format string payloads to potentially execute arbitrary code and crash the application.

Exploits (1)

exploitdb WORKING POC
by LiquidWorm · textremotehardware
https://www.exploit-db.com/exploits/51259

Scores

CVSS v3 9.8
EPSS 0.0018
EPSS Percentile 39.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-134
Status published
Products (1)
sound4/linkandshare_transmitter 1.1.2
Published Dec 22, 2025
Tracked Since Feb 18, 2026