Back to CVE List

CVE-2026-54679

Vulnerability Description

jq is a command-line JSON processor. Prior to 1.8.2, on 32bit system, jvp_string_append has a chance of integer/multiple overflowing and then causing a massive buffer overrun. This vulnerability is fixed in 1.8.2.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-190
Source
NVD
Vendor
jqlang
Product
jq

External References

Discussion (0)

Add Comment

No comments yet. Be the first!