CVE-2025-26519

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
14/02/2025
Last modified:
10/12/2025

Description

musl libc 0.9.13 through 1.2.5 before 1.2.6 has an out-of-bounds write vulnerability when an attacker can trigger iconv conversion of untrusted EUC-KR text to UTF-8.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:musl-libc:musl:*:*:*:*:*:*:*:* 0.9.13 (including) 1.2.6 (excluding)