LOWVulnerability
CVE-2026-6368
Calling wordexp with WRDE_APPEND in the GNU C Library version 2.0 to version 2.43 can cause the interface to return invalid memory in the we_wordv member, which on subsequent calls to wordfree may abort the process.
Properties
- epss_score
- 0.00107
- cve_id
- CVE-2026-6368
- published_at
- 2026-08-10T19:17:30.713
- last_modified
- 2026-09-03T16:43:15.293
- epss_percentile
- 0.01241
Related Entities (3)
ENRICHED_BY (1)
→[Source]FIRST EPSS
DESCRIBED_BY (1)
→[Source]NVD
HAS_WEAKNESS (1)
→[Weakness]Use of Uninitialized Resource
Explore deeper with Ninja Signal's threat intelligence graph