CVE-2026-32284
EUVD-2026-1634326.03.2026, 20:16
The msgpack decoder fails to properly validate the input buffer length when processing truncated fixext data (format codes 0xd4-0xd8). This can lead to an out-of-bounds read and a runtime panic, allowing a denial of service attack.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| shamaton | msgpack | 𝑥 ≤ 3.1.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration