Medium severity5.9NVD Advisory· Published Aug 12, 2026· Updated Aug 18, 2026
CVE-2026-19642
CVE-2026-19642
Description
An out-of-bounds write issue in the Base64 decoder in Amazon aws-sdk-cpp before 1.11.862 might allow a remote authenticated user to cause a crash or heap memory corruption in an application that processes crafted Base64-encoded input.
To remediate this issue, users should upgrade to version 1.11.862.
Affected products
2- cpe:2.3:a:amazon:aws_software_development_kit:*:*:*:*:*:c\+\+:*:*Range: <1.11.862
- Range: <1.11.862
Patches
Vulnerability mechanics
References
3- aws.amazon.com/security/security-bulletins/2026-080-aws/nvdVendor Advisory
- github.com/aws/aws-sdk-cpp/security/advisories/GHSA-wxx3-prfc-69xxnvdVendor Advisory
- github.com/aws/aws-sdk-cpp/releases/tag/1.11.862nvdRelease Notes
News mentions
0No linked articles in our index yet.