PT-2026-2957 · Gnu+4 · Gnu C Library+4
Igor Morgenstern
·
Published
2026-01-14
·
Updated
2026-05-24
·
CVE-2026-0861
CVSS v3.1
8.4
High
| Vector | AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
GNU C Library versions 2.30 through 2.42
Description
Providing an excessively large alignment value to the
memalign family of functions – including memalign, posix memalign, aligned alloc, valloc, and pvalloc – within the GNU C Library can lead to an integer overflow. This overflow may result in heap corruption.Recommendations
Update to a version beyond 2.42.
Fix
DoS
Integer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Gnu C Library
Linuxmint
Red Os
Rocky Linux
Ubuntu