VulnAI


EUVD-2026-43495

ID: EUVD-2026-43495

Severity: medium

CVSS v4: 5.1 (CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:L/SC:L/SI:L/SA:L)

CVSS v3: Not provided

CWE: None listed

Source: ENISA

Description

Buffer overflow vulnerability has been found in "extension/readdir.c" program file of gawk (ftype() routine). This issue could be used to crash the program and potentially to achieve code execution, although the latter has not been confirmed to be feasible. It affects gawk in versions 5.4.0 and below.

Timestamps

References

No references provided.