CVE-2026-84268

🟡 Monitoruj

Błąd w gvfs SFTP umożliwia zdalne wykonanie kodu lub powoduje awarię usługi.

CVSS
8.8
EPSS
0.4%
Exploit
none
Vendor
Opis źródłowy (NVD)

A flaw was found in the SFTP backend in gvfs. When mounting a share and reading a file, a malicious SFTP server can cause read_reply() to process a length that exceeds the size requested by the client. The function does not verify the server-provided length against the allocated buffer size, causing the operation to write past the intended boundaries. This issue allows a malicious server to corrupt adjacent heap memory in the gvfsd-sftp process, resulting in a denial of service as the process aborts upon detecting the heap corruption or potentially allowing arbitrary code execution.

dos rce Brak patcha
Źródła i daty
ŹródłoWartość
NVD – CVSS8.8
CISA KEV (aktywnie wykorzystywane)Nie
FIRST EPSS (prawdopodobieństwo exploita)0.4%
Opublikowano (NVD)2026-09-01 16:17:37 UTC
Ostatnia modyfikacja (NVD)2026-10-01 17:17:32 UTC
Referencje