PT-2026-49527 · Socket+3 · Socket+3

CVE-2026-12087

·

Published

2026-06-15

·

Updated

2026-09-09

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions Socket versions prior to 2.041
Description An out-of-bounds heap read exists in the pack ip mreq source() function. The issue occurs because the function validates the length of the source argument using the byte length of the preceding multiaddr argument instead of the source itself. When a source value shorter than 4 bytes is provided, the function performs a fixed-size copy into the imr sourceaddr field, reading up to 3 bytes past the end of the buffer. This can result in adjacent heap memory being copied into the returned packed structure, potentially leading to information disclosure.
Recommendations Update to version 2.041.

Exploit

Fix

LPE

DoS

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-90156
CVE-2026-12087
ECHO-31E4-D78E-2B62
OESA-2026-2843
OESA-2026-2844
OESA-2026-2845
OESA-2026-2846
OPENSUSE-SU-2026:21411-1
RHSA-2026:11342
SUSE-SU-2026:22847-1
SUSE-SU-2026:22929-1
SUSE-SU-2026:23008-1
SUSE-SU-2026:23075-1
SUSE-SU-2026:3540-1
SUSE-SU-2026:3558-1
USN-8675-1
USN-8675-2
USN-8684-1

Affected Products

Ibm Aix
Linuxmint
Socket
Ubuntu