Security Advisory

CVE-2026-54679

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-25 17:16:18
Last updated 2026-06-25 18:09:00
Assigner GitHub_M
CVSS score 6.9
State PUBLISHED

Description

jq is a command-line JSON processor. Prior to 1.8.2, on 32bit system, jvp_string_append has a chance of integer/multiple overflowing and then causing a massive buffer overrun. This vulnerability is fixed in 1.8.2.