Bug 2519555 (CVE-2026-65609) - CVE-2026-65609 nnn: nnn: Out-of-bounds write via crafted session file
Summary: CVE-2026-65609 nnn: nnn: Out-of-bounds write via crafted session file
Keywords:
Status: NEW
Alias: CVE-2026-65609
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 2521953 2521954
Blocks:
TreeView+ depends on / blocked
 
Reported: 2026-08-19 13:44 UTC by OSIDB Bzimport
Modified: 2026-08-24 14:07 UTC (History)
0 users

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2026-08-19 13:44:23 UTC
nnn is vulnerable to Out-of-Bound write vulnerability. Due to lack of validation of attacker-controlled length fields deserialized from a session file, a crafted session file can cause nnn to write data beyond the bounds of fixed-size global buffers when loaded with the -s option. An attacker who can place a malicious session file in the victim's nnn session directory can exploit this to corrupt adjacent global state.




Maintainer of this project was notified about this vulnerability. It might has been addressed, but the maintainer did not provide a vulnerable version range. Only version 5.2 was tested and confirmed as vulnerable.


Note You need to log in before you can comment on or make changes to this bug.