AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-21066

MEDIUM · CVSS 5.1 EPSS 0.12%

Source: NVD + CISA KEV + EPSS · Published 2026-08-10 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

Improper input validation in the libcodec2_sec_flacdec.so library prior to the SMR Aug-2026 Release 1 allows local attackers to exploit out-of-bounds memory writes, potentially leading to data corruption or execution of arbitrary code. Organizations using affected versions of this library should prioritize patching to mitigate the risk of local attacks.

CVE
CVE-2026-21066
Severity
MEDIUM
CVSS
5.1
EPSS
0.12%

Original NVD Description

Improper input validation in libcodec2_sec_flacdec.so prior to SMR Aug-2026 Release 1 allows local attackers to write out-of-bounds memory.