CVE-2026-5190
HIGH SEVERITYCVSS Score & Metrics
Base Score
7.5 / 10
Vector String
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Vulnerability Description
Out-of-bounds write in the streaming decoder component in aws-c-event-stream before 0.6.0 might allow a third party operating a server to cause memory corruption leading to arbitrary code execution on a client application that processes crafted event-stream messages.
To remediate this issue, users should upgrade to version 0.6.0 or later.
To remediate this issue, users should upgrade to version 0.6.0 or later.
Vulnerability Details
Published Date
Last Modified
CWE ID
CWE-787
Source
NVD
Discussion (0)
Add Comment
No comments yet. Be the first!