EIP-2026-115878
PRE-CVEMthree Development MP3 to WAV Decoder - '.mp3' Remote Buffer Overflow
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-115878. PoCs published by 4m!n.
AI-analyzed exploit summary This PoC demonstrates a stack-based buffer overflow in MP3 to WAV Decoder by writing a maliciously crafted MP3 file with an oversized buffer (13240 bytes). The lack of boundary checks allows arbitrary code execution or denial-of-service when the file is processed.
Description
Mthree Development MP3 to WAV Decoder - '.mp3' Remote Buffer Overflow
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by 4m!n · cdoswindows
https://www.exploit-db.com/exploits/34368
This PoC demonstrates a stack-based buffer overflow in MP3 to WAV Decoder by writing a maliciously crafted MP3 file with an oversized buffer (13240 bytes). The lack of boundary checks allows arbitrary code execution or denial-of-service when the file is processed.
Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target:
MP3 to WAV Decoder (version unspecified)
No auth needed
Prerequisites:
Victim must open the crafted MP3 file with the vulnerable software
MITRE ATT&CK
devstral-2 · analyzed Feb 18, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026