Security NewsMediumIncidentvulnerability
CVE-2026-39979 jq: Out-of-Bounds Read in jv_parse_sized() Error Formatting for Non-NUL-Terminated Counted Buffers
UnknownApr 17, 2026(23 days ago)
CVE-2026-39979 describes an out-of-bounds read vulnerability in jq's jv_parse_sized() function when handling error formatting for non-NUL-terminated counted buffers.
Information published.
Related CVEs