THREAT OPS › Threat News › CVE-2026-41992 gzip 1.14 out-of-bounds memory buffer access
CVE-2026-41992 gzip 1.14 out-of-bounds memory buffer access
<p>Posted by Paul Eggert on Aug 23</p>CVSS Base Score: medium<br /> <br /> Affected versions: gzip 1.14 and earlier<br /> <br /> Description: Out-of-bounds memory buffer access that can be triggered if a single gzip -d instance decompresses <br /> specially crafted LZW data followed by specially crafted LZH data.<br /> <br /> Users are recommended to apply the following patch, or to install gzip 1
Indicators of compromise
- CVE-2026-41992cve
Original source: https://seclists.org/oss-sec/2026/q3/550