Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-18839

Опубликовано: 05 авг. 2026
Источник: redhat
CVSS3: 2.2
EPSS Низкий

Описание

An integer underflow was found in the popt library when formatting help text for option tables that exceed the terminal width. A local user who can cause an application to print help under those conditions may cause that application to crash or fail to display help, resulting in a denial of service of the affected application.

Отчет

This is a Low impact vulnerability where a size_t underflow in the popt library's help formatting function can occur when an application's option table is displayed in a narrow terminal with large option widths. This could potentially lead to memory allocation failures or out-of-bounds writes, but requires specific user interaction and terminal conditions, limiting its exploitability and overall risk.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10poptFix deferred
Red Hat Enterprise Linux 6poptOut of support scope
Red Hat Enterprise Linux 7poptFix deferred
Red Hat Enterprise Linux 8poptFix deferred
Red Hat Enterprise Linux 9poptFix deferred
Red Hat Hardened ImagespoptAffected
Red Hat OpenShift Container Platform 4rhcosFix deferred

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-191
https://bugzilla.redhat.com/show_bug.cgi?id=2511010popt-devel: popt-static: size_t underflow in singleOptionHelp

EPSS

Процентиль: 0%
0.00084
Низкий

2.2 Low

CVSS3

Связанные уязвимости

CVSS3: 2.2
ubuntu
4 дня назад

(An integer underflow was found in the popt library when formatting hel ...)

CVSS3: 2.2
nvd
4 дня назад

An integer underflow was found in the popt library when formatting help text for option tables that exceed the terminal width. A local user who can cause an application to print help under those conditions may cause that application to crash or fail to display help, resulting in a denial of service of the affected application.

msrc
3 дня назад

Popt-devel: popt-static: size_t underflow in singleoptionhelp

CVSS3: 2.2
debian
4 дня назад

An integer underflow was found in the popt library when formatting hel ...

CVSS3: 2.2
github
4 дня назад

An integer underflow was found in the popt library when formatting help text for option tables that exceed the terminal width. A local user who can cause an application to print help under those conditions may cause that application to crash or fail to display help, resulting in a denial of service of the affected application.

EPSS

Процентиль: 0%
0.00084
Низкий

2.2 Low

CVSS3