Skip to main content

Threats Tagged 'cve-2026-6791'

View all threats tagged with 'cve-2026-6791'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cve-2026-6791

Threats Tagged 'cve-2026-6791'

Click on any threat for detailed analysis and mitigation recommendations

0

Multiple security issues were fixed in the glibc-2.44-1.1 package for openSUSE Tumbleweed. These issues relate to vulnerabilities identified by CWE-1341 and CWE-120. The update addresses these flaws to improve security. The vendor advisory from Red Hat indicates that updates are available for related packages, including glibc and its language packs. No known exploits are reported in the wild. The severity is assessed as medium.

Join the discussion

When expanding paths that begin with a tilde (~) followed by a username, the internal parse_tilde function extracts the username to determine the user's home directory. The implementation allocates memory for this username directly on the stack using the strndupa macro. Because the size of this allocation was determined by the length of the user-supplied input without any bounds checks, passing an excessively long username e.g. thousands of characters, forces the thread to exhaust its stack space. Thus if an application passes untrusted, attacker-controlled input to the wordexp function, an attacker can trigger a stack clash.

Join the discussion

Showing 1 to 2 of 2 results

Filters:Tag: cve-2026-6791
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses