Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2026-89046

5 дней назад

(zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds re ...)

CVSS3: 8.2
EPSS: Низкий
redhat логотип

CVE-2026-89046

5 дней назад

zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds read vulnerability in Zstd.getFrameContentSize that fails to validate negative srcPosition arguments. Attackers can supply negative offset values that bypass bounds checks and reach the native frame-header parser, causing out-of-bounds memory reads that lead to information disclosure or JVM crashes.

CVSS3: 8.2
EPSS: Низкий
nvd логотип

CVE-2026-89046

5 дней назад

zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds read vulnerability in Zstd.getFrameContentSize that fails to validate negative srcPosition arguments. Attackers can supply negative offset values that bypass bounds checks and reach the native frame-header parser, causing out-of-bounds memory reads that lead to information disclosure or JVM crashes.

CVSS3: 8.2
EPSS: Низкий
debian логотип

CVE-2026-89046

5 дней назад

zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds re ...

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-h98q-h7vh-hjv2

5 дней назад

zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds read vulnerability in Zstd.getFrameContentSize that fails to validate negative srcPosition arguments. Attackers can supply negative offset values that bypass bounds checks and reach the native frame-header parser, causing out-of-bounds memory reads that lead to information disclosure or JVM crashes.

CVSS3: 8.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-89046

(zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds re ...)

CVSS3: 8.2
1%
Низкий
5 дней назад
redhat логотип
CVE-2026-89046

zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds read vulnerability in Zstd.getFrameContentSize that fails to validate negative srcPosition arguments. Attackers can supply negative offset values that bypass bounds checks and reach the native frame-header parser, causing out-of-bounds memory reads that lead to information disclosure or JVM crashes.

CVSS3: 8.2
1%
Низкий
5 дней назад
nvd логотип
CVE-2026-89046

zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds read vulnerability in Zstd.getFrameContentSize that fails to validate negative srcPosition arguments. Attackers can supply negative offset values that bypass bounds checks and reach the native frame-header parser, causing out-of-bounds memory reads that lead to information disclosure or JVM crashes.

CVSS3: 8.2
1%
Низкий
5 дней назад
debian логотип
CVE-2026-89046

zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds re ...

CVSS3: 8.2
1%
Низкий
5 дней назад
github логотип
GHSA-h98q-h7vh-hjv2

zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds read vulnerability in Zstd.getFrameContentSize that fails to validate negative srcPosition arguments. Attackers can supply negative offset values that bypass bounds checks and reach the native frame-header parser, causing out-of-bounds memory reads that lead to information disclosure or JVM crashes.

CVSS3: 8.2
1%
Низкий
5 дней назад

Уязвимостей на страницу