PT-2026-4735 · Gix-Date · Gix-Date
Shinmao
·
Published
2025-12-29
·
Updated
2026-02-26
·
CVE-2026-0810
CVSS v3.1
7.1
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
gix-date (affected versions not specified)
Description
The
gix date::parse::TimeBuf::as str function can produce strings with invalid, non-UTF8 characters. This breaks internal safety rules within the TimeBuf component, potentially causing unpredictable application behavior, including instability.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Gix-Date