Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-44927

Опубликовано: 08 мая 2026
Источник: redhat
CVSS3: 2.2
EPSS Низкий

Описание

In uriparser before 1.0.2, there is pointer difference truncation to int in various places.

A flaw was found in uriparser. This vulnerability involves pointer difference truncation, where calculations involving memory addresses are incorrectly shortened. This could lead to minor data integrity issues within the application. Exploitation of this flaw requires local access to the system and is complex.

Отчет

This flaw in uriparser has a Low impact, as it requires local access to the system and is complex to exploit. The pointer difference truncation could lead to minor data integrity issues within applications utilizing uriparser.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 7uriparserFix deferred
Red Hat Enterprise Linux AI (RHEL AI) 3uriparserFix deferred
Red Hat Hardened Imagesuriparser-main-1.0.2-1.hum1FixedRHSA-2026:1634112.05.2026

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-681
https://bugzilla.redhat.com/show_bug.cgi?id=2467976uriparser: uriparser: Data integrity issue due to pointer truncation

EPSS

Процентиль: 11%
0.00211
Низкий

2.2 Low

CVSS3

Связанные уязвимости

CVSS3: 2.9
ubuntu
3 месяца назад

In uriparser before 1.0.2, there is pointer difference truncation to int in various places.

CVSS3: 2.9
nvd
3 месяца назад

In uriparser before 1.0.2, there is pointer difference truncation to int in various places.

CVSS3: 2.9
debian
3 месяца назад

In uriparser before 1.0.2, there is pointer difference truncation to i ...

CVSS3: 2.9
github
3 месяца назад

In uriparser before 1.0.2, there is pointer difference truncation to int in various places.

suse-cvrf
29 дней назад

Security update for uriparser

EPSS

Процентиль: 11%
0.00211
Низкий

2.2 Low

CVSS3