VYPR
Unrated severityNVD Advisory· Published Jun 30, 2026

Debian llvm-toolchain-19: A vulnerability was found in llvm llvm-project up to 22.1.6. This affects the fu…

CVE-2026-13573

Description

A vulnerability was found in llvm llvm-project up to 22.1.6. This affects the function llvm::StringMap::insert in the library /lib/IR/ValueSymbolTable.cpp of the component ValueSymbolTable Module. The manipulation results in stack-based buffer overflow. Attacking locally is a requirement. The exploit has been made public and could be used. The project was informed of the problem early through an issue report but has not responded yet.

Affected products

3

Patches

Vulnerability mechanics

News mentions

0

No linked articles in our index yet.