VYPR

sg3-utils

by Debian

CVEs (1)

  • CVE-2026-16313Jul 29, 2026
    risk 0.00cvss epss

    A flaw was found in sg3_utils. The sg_inq command, when invoked with the --export option, outputs device identification data without sanitizing control characters in SCSI name string fields. A newline character embedded in a device-supplied name string can inject arbitrary…