PT-2026-49527 · Socket+3 · Socket+3
CVE-2026-12087
·
Published
2026-06-15
·
Updated
2026-09-09
CVSS v3.1
9.1
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Socket versions prior to 2.041
Description
An out-of-bounds heap read exists in the
pack ip mreq source() function. The issue occurs because the function validates the length of the source argument using the byte length of the preceding multiaddr argument instead of the source itself. When a source value shorter than 4 bytes is provided, the function performs a fixed-size copy into the imr sourceaddr field, reading up to 3 bytes past the end of the buffer. This can result in adjacent heap memory being copied into the returned packed structure, potentially leading to information disclosure.Recommendations
Update to version 2.041.
Exploit
Fix
LPE
DoS
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ibm Aix
Linuxmint
Socket
Ubuntu