|
|
Message-ID: <8db46812-9b6a-4db6-90d2-ea46b3dab09d@pipping.org> Date: Mon, 27 Apr 2026 14:57:36 +0200 From: Sebastian Pipping <sebastian@...ping.org> To: oss-security@...ts.openwall.com Subject: uriparser 1.0.1 fixes CVE-2026-42371 (integer overflow) Hello oss-security, just a quick note that uriparser 1.0.1 released today is fixing CVE-2026-42371: integer overflow in text range comparison. Some key links are: - The change log of release 1.0.1 https://github.com/uriparser/uriparser/blob/uriparser-1.0.1/ChangeLog - The fixing pull request https://github.com/uriparser/uriparser/pull/298 - The official CVE metadata https://nvd.nist.gov/vuln/detail/CVE-2026-42371 Best Sebastian
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.