Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-40468

Опубликовано: 13 июл. 2026
Источник: debian
EPSS Низкий

Описание

Integer overflow vulnerability has been found in "builtin.c" program file of gawk. This issue may lead to memory exhaustion on the hosting operating system and could be used to overwrite gawk heap metadata and objects with attacker-controlled bytes. It affects gawk in versions 5.4.0 and below.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gawkunfixedpackage

Примечания

  • Fixed by: https://cgit.git.savannah.gnu.org/cgit/gawk.git/commit/?id=062f2f2581b991362c046f7f2e238ffa34e6f8c7

EPSS

Процентиль: 10%
0.00201
Низкий

Связанные уязвимости

CVSS3: 9.1
ubuntu
24 дня назад

Integer overflow vulnerability has been found in "builtin.c" program file of gawk. This issue may lead to memory exhaustion on the hosting operating system and could be used to overwrite gawk heap metadata and objects with attacker-controlled bytes. It affects gawk in versions 5.4.0 and below.

CVSS3: 4.4
redhat
24 дня назад

Integer overflow vulnerability has been found in "builtin.c" program file of gawk. This issue may lead to memory exhaustion on the hosting operating system and could be used to overwrite gawk heap metadata and objects with attacker-controlled bytes. It affects gawk in versions 5.4.0 and below.

CVSS3: 9.1
nvd
24 дня назад

Integer overflow vulnerability has been found in "builtin.c" program file of gawk. This issue may lead to memory exhaustion on the hosting operating system and could be used to overwrite gawk heap metadata and objects with attacker-controlled bytes. It affects gawk in versions 5.4.0 and below.

msrc
24 дня назад

Heap buffer overflow in gawk

suse-cvrf
14 дней назад

Security update for gawk

EPSS

Процентиль: 10%
0.00201
Низкий