Threats Tagged 'cve-2026-75900'
View all threats tagged with 'cve-2026-75900'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-75900'
Click on any threat for detailed analysis and mitigation recommendations
0 A security update for swtpm addresses an out-of-bounds read vulnerability (CVE-2026-75900) caused by a mismatch between the size of a pointer and a structure in the SWTPM_NVRAM_CheckHeader function. This flaw could lead to memory safety issues. The vulnerability is classified as CWE-125 (Out-of-bounds Read) and affects multiple specific versions of swtpm. The severity is assessed as medium. Join the discussion | GCVE Database | 09/22/2026, 11:56:50 UTC Added: 08/19/2026, 13:50:28 UTC |
CVE-2026-75900 is an out-of-bounds read vulnerability in the swtpm component of Red Hat Enterprise Linux 10. The flaw arises from improper buffer length validation in the SWTPM_NVRAM_CheckHeader() function, where the size of a pointer is checked instead of the size of the actual struct. This leads to a heap overread of 2 bytes on 64-bit systems and 6 bytes on 32-bit systems, potentially causing daemon crashes and leaking adjacent heap data to logs. Red Hat rates this issue as moderate impact with a CVSS score of 6.1. A fix is available in swtpm version 0.10.2. No mitigation other than upgrading is currently recommended. Join the discussion | CVE Database V5 | 08/19/2026, 07:44:35 UTC Added: 08/19/2026, 08:05:06 UTC |
Showing 1 to 2 of 2 results