Security Advisory

CVE-2026-26829

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-03-23 00:00:00
Last updated 2026-03-23 16:55:00
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

A NULL pointer dereference in the safe_atou64 function (src/misc.c) of owntone-server through commit c4d57aa allows attackers to cause a Denial of Service (DoS) via sending a series of crafted HTTP requests to the server.