Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-40468

Опубликовано: 13 июл. 2026
Источник: nvd
CVSS3: 9.1
EPSS Низкий

Описание

Integer overflow vulnerability has been found in "builtin.c" program file of gawk. This issue may lead to memory exhaustion on the hosting operating system and could be used to overwrite gawk heap metadata and objects with attacker-controlled bytes. It affects gawk in versions 5.4.0 and below.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:fossies:gawk:*:*:*:*:*:*:*:*
Версия до 5.4.0 (включая)

EPSS

Процентиль: 10%
0.00201
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 9.1
ubuntu
24 дня назад

Integer overflow vulnerability has been found in "builtin.c" program file of gawk. This issue may lead to memory exhaustion on the hosting operating system and could be used to overwrite gawk heap metadata and objects with attacker-controlled bytes. It affects gawk in versions 5.4.0 and below.

msrc
24 дня назад

Heap buffer overflow in gawk

CVSS3: 9.1
debian
24 дня назад

Integer overflow vulnerability has been found in "builtin.c" program f ...

suse-cvrf
14 дней назад

Security update for gawk

CVSS3: 9.1
github
24 дня назад

Integer overflow vulnerability has been found in "builtin.c" program file of gawk. This issue may lead to memory exhaustion on the hosting operating system and could be used to overwrite gawk heap metadata and objects with attacker-controlled bytes. It affects gawk in versions 5.4.0 and below.

EPSS

Процентиль: 10%
0.00201
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-190