CVE-2019-25665 MEDIUM

CVE-2019-25665: River Past Ringtone Converter 2.7.6.1601 Buffer Overflow DoS

Vendor Riverpast
Product River Past Ringtone Converter
Weakness CWE-787
Published April 5, 2026
Last update April 6, 2026

CVSS base score

6.9/10
Attack vector Local
Attack complexity Low
Privileges required None
User interaction None
Confidentiality
Integrity

CVSS vector

CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

What the vulnerability does

01Description

River Past Ringtone Converter 2.7.6.1601 contains a local buffer overflow vulnerability that allows attackers to crash the application by supplying oversized input to activation fields. Attackers can paste 300 bytes of data into the Email textbox and Activation code textarea via the Help menu's Activate dialog to trigger a denial of service condition.

Key dates

02Disclosure timeline

April 5, 2026 CVE published
April 6, 2026 Record updated