← Back to CVE search

CVE-2026-58081

libiconv

Description

Several encoding modules, including HZ, UTF-7, VIQR, and ZW, did not properly check the size of the caller-supplied output buffer before writing converted characters. An application that uses iconv(3) to convert untrusted input to or from one of the affected encodings may be vulnerable to buffer overflows if it uses one of the affected encoding modules.

CVSS 9.8EPSS 0.364%Risk 1.01
View source
Published
2026-08-19 08:17:12
Affected versions
unknown
Type
Library
Last modified
2026-08-26 18:16:42
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H