This site requires JavaScript to be enabled to function correctly, please enable it.
Summary:
CVE-2026-5450 glibc: glibc: Heap Buffer Overflow in `scanf` with `%mc` format specifier and large width [fedora-all]
Product:
[Fedora] Fedora
Reporter:
Keith Grant <kgrant>
Component:
glibc Assignee:
Carlos O'Donell <codonell>
Status:
CLOSED
CURRENTRELEASE
QA Contact:
Fedora Extras Quality Assurance <extras-qa>
Severity:
medium
Docs Contact:
Priority:
medium
Version:
rawhide CC:
arjun, ashankar, codonell, dj, fberat, fweimer, jlaw, josmyers, mcermak, mcoufal, mfabian, pfrankli, sipoyare, skolosov, suraj.ghimire7
Target Milestone:
--- Keywords:
Security, SecurityTracking
Target Release:
---
Hardware:
Unspecified
OS:
Unspecified
Whiteboard:
{"flaws": ["dbe78904-9cc4-4957-bef0-261a5786f6f3"]}
Fixed In Version:
glibc-2.42-12.fc43 glibc-2.43-4.fc44 glibc-2.43.9000-15.fc45
Doc Type:
---
Doc Text:
Story Points:
---
Clone Of:
Environment:
Last Closed:
2026-05-29 13:20:10 UTC
Type:
---
Regression:
---
Mount Type:
---
Documentation:
---
CRM:
Verified Versions:
Category:
---
oVirt Team:
---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team:
---
Target Upstream Version:
Embargoed:
Bug Depends On:
Bug Blocks:
2459853