High severity8.2NVD Advisory· Published May 15, 2026· Updated Jul 15, 2026
CVE-2026-34253
CVE-2026-34253
Description
A buffer underflow vulnerability has been identified in the ogg123 utility from the vorbis-tools 1.4.3 package in function remotethread in remote.c. This vulnerability occurs in the remote control functionality when processing malformed input, leading to a stack buffer underflow that can cause application crashes and potentially allow code execution.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3(expand)+ 1 more
- (no CPE)
- (no CPE)range: =1.4.3
Patches
Vulnerability mechanics
References
5- access.redhat.com/security/cve/CVE-2026-34253nvd
- bugzilla.redhat.com/show_bug.cginvd
- github.com/xiph/vorbis-tools/archive/refs/tags/v1.4.3.tar.gznvd
- github.com/xiph/vorbis-tools/blob/0b3fbf42eb3897d32f4a75baa2dc915a4ca45e8e/ogg123/remote.cnvd
- security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-34253.jsonnvd
News mentions
0No linked articles in our index yet.