PT-2026-31986 · Musl Libc · Musl Libc
Published
2026-04-10
·
Updated
2026-04-11
·
CVE-2026-40200
CVSS v3.1
8.1
High
| AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
musl libc versions 0.7.10 through 1.2.6
Description
A stack-based memory corruption issue exists during the sorting of very large arrays using the
qsort function, due to incorrectly implemented double-word primitives. The number of elements must exceed approximately seven million on 32-bit platforms. On 64-bit platforms, the threshold is not practical.Recommendations
Update to a version later than 1.2.6.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Musl Libc