Bug 2517522 (CVE-2026-71979) - CVE-2026-71979 indilib/indi: libindi: INDI indiserver: Denial of Service via malformed XML tag parsing
Summary: CVE-2026-71979 indilib/indi: libindi: INDI indiserver: Denial of Service via ...
Keywords:
Status: NEW
Alias: CVE-2026-71979
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
high
high
Target Milestone: ---
Assignee: Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 2528497 2528498
Blocks:
TreeView+ depends on / blocked
 
Reported: 2026-08-17 18:00 UTC by OSIDB Bzimport
Modified: 2026-09-04 13:46 UTC (History)
0 users

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2026-08-17 18:00:09 UTC
INDI (Instrument Neutral Distributed Interface) indiserver through 2.2.4.2, fixed in commit 96bbd7f, contains a stack buffer overflow vulnerability that allows unauthenticated remote attackers to crash the daemon by sending malformed XML with mismatched tags whose names exceed 1024 bytes. Attackers can send a single TCP packet on port 7624 with mismatched XML tags to trigger an unbounded sprintf() write into a fixed 1024-byte stack buffer in MsgQueue.cpp, terminating the daemon and disrupting all active client and driver sessions.


Note You need to log in before you can comment on or make changes to this bug.