CVE-2026-75538
- EPSS 0.49%
- Veröffentlicht 01.09.2026 14:48:26
- Zuletzt bearbeitet 08.09.2026 02:17:27
An attacker that connects to an open Erlang TCP port that uses the inet driver with {packet,4} mode can use a signed overflow in an incorrect packet length calculation to overflow the receive buffer into the VM allocator area and beyond up to about 2...
CVE-2026-54890
- EPSS 0.39%
- Veröffentlicht 27.07.2026 16:17:41
- Zuletzt bearbeitet 10.08.2026 20:25:42
Integer Underflow (Wrap or Wraparound) vulnerability in erlang otp erlang/otp (erts modules), erlang otp erts (erts modules) allows Forced Integer Overflow, Excessive Allocation. This vulnerability is associated with program files erts/emulator/beam/...
CVE-2026-55737
- EPSS 0.29%
- Veröffentlicht 27.07.2026 15:13:54
- Zuletzt bearbeitet 10.08.2026 20:24:25
Signed to Unsigned Conversion Error and Out-of-bounds Write vulnerability in Erlang OTP erts allows an attacker who can supply a crafted Erlang external term format (ETF) binary to binary_to_term/1 to corrupt the BEAM heap pointer and crash the virtu...
CVE-2026-42792
- EPSS 0.44%
- Veröffentlicht 27.07.2026 14:58:24
- Zuletzt bearbeitet 10.08.2026 20:26:36
Improper Handling of Exceptional Conditions vulnerability in Erlang OTP erts (epmd) allows an unauthenticated remote attacker to permanently terminate the Erlang Port Mapper Daemon (epmd) via connection slot exhaustion. The do_accept function in ert...
CVE-2026-49759
- EPSS 0.5%
- Veröffentlicht 10.06.2026 14:35:38
- Zuletzt bearbeitet 24.09.2026 21:17:14
Stack-based Buffer Overflow vulnerability in Erlang OTP erts (inet_drv) allows an unauthenticated remote attacker to crash the BEAM VM by sending a crafted SCTP ERROR chunk. The sctp_parse_error_chunk function in erts/emulator/drivers/common/inet_dr...