CyberRota Analysis
AI-GeneratedImproper input validation in the libcodec2_sec_flacdec.so library prior to the SMR Aug-2026 Release 1 allows local attackers to exploit out-of-bounds memory writes, potentially leading to data corruption or execution of arbitrary code. Organizations using affected versions of this library should prioritize patching to mitigate the risk of local attacks.
CVE
CVE-2026-21066
Severity
MEDIUM
CVSS
5.1
EPSS
0.12%
Original NVD Description
Improper input validation in libcodec2_sec_flacdec.so prior to SMR Aug-2026 Release 1 allows local attackers to write out-of-bounds memory.