Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-89046

Опубликовано: 10 сент. 2026
Источник: redhat
CVSS3: 8.2

Описание

zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds read vulnerability in Zstd.getFrameContentSize that fails to validate negative srcPosition arguments. Attackers can supply negative offset values that bypass bounds checks and reach the native frame-header parser, causing out-of-bounds memory reads that lead to information disclosure or JVM crashes.

A flaw was found in zstd-jni. This out-of-bounds read vulnerability in the Zstd.getFrameContentSize function occurs because it fails to validate negative srcPosition arguments. A remote attacker can supply negative offset values, bypassing bounds checks and accessing the native frame-header parser. This can lead to out-of-bounds memory reads, resulting in information disclosure or a Java Virtual Machine (JVM) crash.

Отчет

Red Hat is aware of an out-of-bounds read in zstd-jni when a negative source position is supplied to Zstd.getFrameContentSize. This may disclose native memory or cause a JVM crash. Affected Red Hat products are tracked for updates containing zstd-jni 1.5.7-14 or later.

Меры по смягчению последствий

Update to a product release containing zstd-jni 1.5.7-14 or later. Until updated, validate source positions and reject negative offsets before calling Zstd.getFrameContentSize. Do not pass attacker-controlled offsets to this method without validation.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Exploit Intelligenceexploit-intelligence/agent-client-rhel9Affected
OpenShift Developer Tools and Servicesjenkins-2-pluginsAffected
OpenShift Developer Tools and Servicesocp-tools-4/jenkins-rhel8Affected
OpenShift Developer Tools and Servicesocp-tools-4/jenkins-rhel9Affected
Red Hat build of Apache Camel 4 for Quarkus 3zstd-jniAffected
Red Hat build of Apache Camel for Spring Boot 4zstd-jniAffected
Red Hat build of Apicurio Registry 3zstd-jniAffected
Red Hat build of Debezium 3zstd-jniAffected
Red Hat build of Quarkuszstd-jniAffected
Red Hat Ceph Storage 9libarrowFix deferred

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=2531577zstd-jni: zstd-jni: Information disclosure or denial of service via out-of-bounds read

8.2 High

CVSS3

Связанные уязвимости

CVSS3: 8.2
ubuntu
5 дней назад

(zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds re ...)

CVSS3: 8.2
nvd
5 дней назад

zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds read vulnerability in Zstd.getFrameContentSize that fails to validate negative srcPosition arguments. Attackers can supply negative offset values that bypass bounds checks and reach the native frame-header parser, causing out-of-bounds memory reads that lead to information disclosure or JVM crashes.

CVSS3: 8.2
debian
5 дней назад

zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds re ...

CVSS3: 8.2
github
5 дней назад

zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds read vulnerability in Zstd.getFrameContentSize that fails to validate negative srcPosition arguments. Attackers can supply negative offset values that bypass bounds checks and reach the native frame-header parser, causing out-of-bounds memory reads that lead to information disclosure or JVM crashes.

8.2 High

CVSS3