Critical severity9.8NVD Advisory· Published Feb 13, 2017· Updated May 13, 2026
CVE-2016-8859
CVE-2016-8859
Description
Multiple integer overflows in the TRE library and musl libc allow attackers to cause memory corruption via a large number of (1) states or (2) tags, which triggers an out-of-bounds write.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- www.openwall.com/lists/oss-security/2016/10/19/1nvdMailing ListThird Party Advisory
- www.openwall.com/lists/oss-security/2016/10/19/10nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/93795nvdThird Party AdvisoryVDB Entry
- lists.opensuse.org/opensuse-security-announce/2020-04/msg00041.htmlnvd
- security.gentoo.org/glsa/201701-11nvd
- security.gentoo.org/glsa/202007-43nvd
News mentions
0No linked articles in our index yet.