Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-6042

Опубликовано: 10 апр. 2026
Источник: debian
EPSS Низкий

Описание

A security flaw has been discovered in musl libc up to 1.2.6. Affected is the function iconv of the file src/locale/iconv.c of the component GB18030 4-byte Decoder. Performing a manipulation results in inefficient algorithmic complexity. The attack must be initiated from a local position. To fix this issue, it is recommended to deploy a patch.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
muslfixed1.2.5-3.1package
muslfixed1.2.5-3.1~deb13u1trixiepackage
muslno-dsabookwormpackage
muslpostponedbullseyepackage

Примечания

  • https://www.openwall.com/lists/oss-security/2026/04/02/10

  • https://www.openwall.com/lists/oss-security/2026/04/03/2

  • Fixed by: https://git.musl-libc.org/cgit/musl/commit/?id=67219f0130ec7c876ac0b299046460fad31caabf

EPSS

Процентиль: 13%
0.00227
Низкий

Связанные уязвимости

CVSS3: 3.3
ubuntu
4 месяца назад

A security flaw has been discovered in musl libc up to 1.2.6. Affected is the function iconv of the file src/locale/iconv.c of the component GB18030 4-byte Decoder. Performing a manipulation results in inefficient algorithmic complexity. The attack must be initiated from a local position. To fix this issue, it is recommended to deploy a patch.

CVSS3: 5.5
redhat
4 месяца назад

A security flaw has been discovered in musl libc up to 1.2.6. Affected is the function iconv of the file src/locale/iconv.c of the component GB18030 4-byte Decoder. Performing a manipulation results in inefficient algorithmic complexity. The attack must be initiated from a local position. To fix this issue, it is recommended to deploy a patch.

CVSS3: 3.3
nvd
4 месяца назад

A security flaw has been discovered in musl libc up to 1.2.6. Affected is the function iconv of the file src/locale/iconv.c of the component GB18030 4-byte Decoder. Performing a manipulation results in inefficient algorithmic complexity. The attack must be initiated from a local position. To fix this issue, it is recommended to deploy a patch.

CVSS3: 3.3
github
4 месяца назад

A security flaw has been discovered in musl libc up to 1.2.6. Affected is the function iconv of the file src/locale/iconv.c of the component GB18030 4-byte Decoder. Performing a manipulation results in inefficient algorithmic complexity. The attack must be initiated from a local position. To fix this issue, it is recommended to deploy a patch.

EPSS

Процентиль: 13%
0.00227
Низкий