Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-87825

Опубликовано: 09 сент. 2026
Источник: redhat
CVSS3: 7.7
EPSS Низкий

Описание

zstd-jni before 1.5.7-14 contains a use-after-free vulnerability where streams and contexts hold a dictionary's shared lock only during the load call, allowing the dictionary to be closed while still referenced. Attackers can close a dictionary after associating it with a stream or context, causing subsequent read or write operations to access freed native memory, resulting in silent data corruption or JVM crashes.

A flaw was found in zstd-jni. This use-after-free vulnerability occurs because streams and contexts only hold a dictionary's shared lock during the load call, allowing the dictionary to be closed while still being referenced. A remote attacker could exploit this by closing a dictionary after associating it with a stream or context. Subsequent read or write operations would then access freed native memory, leading to silent data corruption or a Java Virtual Machine (JVM) crash, resulting in a denial of service.

Отчет

This is an Important flaw in zstd-jni that could lead to silent data corruption or JVM crashes due to a use-after-free vulnerability. The flaw arises when a dictionary is prematurely closed while still actively referenced by compression or decompression streams, potentially impacting Red Hat products that utilize zstd-jni for data handling.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Exploit Intelligenceexploit-intelligence/agent-client-rhel9Affected
OpenShift Developer Tools and Servicesjenkins-2-pluginsAffected
OpenShift Developer Tools and Servicesocp-tools-4/jenkins-rhel8Affected
OpenShift Developer Tools and Servicesocp-tools-4/jenkins-rhel9Affected
Red Hat build of Apache Camel 4 for Quarkus 3zstd-jniAffected
Red Hat build of Apache Camel for Spring Boot 4zstd-jniAffected
Red Hat build of Apicurio Registry 3zstd-jniAffected
Red Hat build of Debezium 3zstd-jniAffected
Red Hat build of Quarkuszstd-jniAffected
Red Hat Ceph Storage 9libarrowAffected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-825
https://bugzilla.redhat.com/show_bug.cgi?id=2531007com.github.luben/zstd-jni: zstd-jni: Data corruption or denial of service via use-after-free vulnerability

EPSS

Процентиль: 3%
0.00133
Низкий

7.7 High

CVSS3

Связанные уязвимости

CVSS3: 7.7
ubuntu
6 дней назад

(zstd-jni before 1.5.7-14 contains a use-after-free vulnerability where ...)

CVSS3: 7.7
nvd
6 дней назад

zstd-jni before 1.5.7-14 contains a use-after-free vulnerability where streams and contexts hold a dictionary's shared lock only during the load call, allowing the dictionary to be closed while still referenced. Attackers can close a dictionary after associating it with a stream or context, causing subsequent read or write operations to access freed native memory, resulting in silent data corruption or JVM crashes.

CVSS3: 7.7
debian
6 дней назад

zstd-jni before 1.5.7-14 contains a use-after-free vulnerability where ...

CVSS3: 7.7
github
6 дней назад

zstd-jni before 1.5.7-14 contains a use-after-free vulnerability where streams and contexts hold a dictionary's shared lock only during the load call, allowing the dictionary to be closed while still referenced. Attackers can close a dictionary after associating it with a stream or context, causing subsequent read or write operations to access freed native memory, resulting in silent data corruption or JVM crashes.

CVSS3: 7.7
fstec
около 1 месяца назад

Уязвимость компонентов ZstdCompressCtx и ZstdDecompressCtx библиотеки сжатия данных zstd-jni, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 3%
0.00133
Низкий

7.7 High

CVSS3