Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Let’s see how upstream triages the issue, https://github.com/mackron/dr_libs/issues/298. There is a suggested fix, which is nice, but there’s no need to get in a huge rush to patch what is at worst a potential denial of service. https://www.cve.org/CVERecord?id=CVE-2026-32836