Description

Calling the scanf family of functions with a %mc (malloc'd character match) in the GNU C Library version 2.7 to version 2.43 with a format width specifier with an explicit width greater than 1024 could result in a one byte heap buffer overflow.

INFO

Published Date :

2026-04-20T20:55:41.170Z

Last Modified :

2026-04-21T19:49:53.221Z

Source :

glibc
AFFECTED PRODUCTS

The following products are affected by CVE-2026-5450 vulnerability.

Vendors Products
Gnu
  • Glibc
The Gnu C Library
  • Glibc

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact