VYPR

unexpand

by GNU

CVEs (1)

  • CVE-2026-56392LowJul 24, 2026
    risk 0.05cvss epss 0.00

    GNU coreutils unexpand is vulnerable to a heap-based buffer overflow due to an integer overflow during buffer allocation when processing large tab stop (-t) values. The multiplication used to calculate the allocation size can wrap around, resulting in an undersized buffer. When…