CVE-2026-0708
- EPSS 0.39%
- Veröffentlicht 17.03.2026 02:28:08
- Zuletzt bearbeitet 11.05.2026 17:14:50
A flaw was found in libucl. A remote attacker could exploit this by providing a specially crafted Universal Configuration Language (UCL) input that contains a key with an embedded null byte. This can cause a segmentation fault (SEGV fault) in the `uc...
CVE-2025-11010
- EPSS 0.15%
- Veröffentlicht 26.09.2025 11:15:38
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability has been found in vstakhov libucl up to 0.9.2. Affected by this vulnerability is the function ucl_include_common of the file /src/ucl_util.c. Such manipulation leads to heap-based buffer overflow. Local access is required to approach ...
CVE-2025-6499
- EPSS 0.21%
- Veröffentlicht 23.06.2025 02:00:08
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability classified as problematic was found in vstakhov libucl up to 0.9.2. Affected by this vulnerability is the function ucl_parse_multiline_string of the file src/ucl_parser.c. The manipulation leads to heap-based buffer overflow. The atta...