Security Advisory

CVE-2026-5450

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-04-20 20:55:41
Last updated 2026-07-14 12:45:30
Assigner glibc
CVSS score not scored
State PUBLISHED

Description

Calling the scanf family of functions with a %mc (malloc'd character match) in the GNU C Library version 2.7 to version 2.43 with a format width specifier with an explicit width greater than 1024 could result in a one byte heap buffer overflow.