Musl Libc · Musl Libc · CVE-2026-6042
Name of the Vulnerable Software and Affected Versions
musl libc versions up to 1.2.6
Description
A security flaw exists in the `iconv` function within the GB18030 4-byte Decoder component of musl libc, specifically in the file `src/locale/iconv.c`. A manipulation of this function leads to inefficient algorithmic complexity. The attack requires local access.
Recommendations
Deploy a patch to address this issue.