← Retour à la recherche de CVE

CVE-2026-58081

libiconv

Description

Several encoding modules, including HZ, UTF-7, VIQR, and ZW, did not properly check the size of the caller-supplied output buffer before writing converted characters. An application that uses iconv(3) to convert untrusted input to or from one of the affected encodings may be vulnerable to buffer overflows if it uses one of the affected encoding modules.

CVSS 9.8EPSS 0.364%Risque 1.01
Voir la source
Publication
2026-08-19 08:17:12
Versions concernées
unknown
Type
Bibliothèque
Dernière modification
2026-08-26 18:16:42
Vecteur
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H