Unrated severityNVD Advisory· Published Jul 15, 2026· Updated Jul 15, 2026
TDengine: Off-by-One Buffer Overflow
CVE-2026-62349
Description
TDengine is an open source, time-series database optimized for Internet of Things devices. In 3.4.1.6 and earlier, source/libs/parser/src/parUtil.c trimString() checks space for only one byte before processing SQL string escape sequences \%, \_, or \x, allowing a one-byte out-of-bounds write to the stack buffer tmpTokenBuf that can cause denial of service and potentially remote code execution. This issue is fixed in version 3.4.1.14.
Affected products
1Patches
Vulnerability mechanics
References
1- github.com/taosdata/TDengine/security/advisories/GHSA-4v5h-fxjw-vrmqmitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.