PT-2026-35191 · Julia · Bison Jll

Published

2026-04-15

·

Updated

2026-04-15

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
GNU Bison before 3.5.4 allows attackers to cause a denial of service (application crash). NOTE: there is a risk only if Bison is used with untrusted input, and an observed bug happens to cause unsafe behavior with a specific compiler/architecture. The bug reports were intended to show that a crash may occur in Bison itself, not that a crash may occur in code that is generated by Bison.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

JLSEC-2026-117

Affected Products

Bison Jll