VulnAI


EUVD-2026-43493

ID: EUVD-2026-43493

Severity: low

CVSS v4: 2.1 (CVSS:4.0/AV:L/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:L)

CVSS v3: Not provided

CWE: None listed

Source: ENISA

Description

Integer overflow vulnerability has been found in "builtin.c" program file of gawk. This issue may lead to memory exhaustion on the hosting operating system and could be used to overwrite gawk heap metadata and objects with attacker-controlled bytes. It affects gawk in versions 5.4.0 and below.

Timestamps

References

No references provided.