{
  "threat_severity" : "Moderate",
  "public_date" : "2026-04-20T20:55:41Z",
  "bugzilla" : {
    "description" : "glibc: glibc: Heap Buffer Overflow in `scanf` with `%mc` format specifier and large width",
    "id" : "2459853",
    "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=2459853"
  },
  "cvss3" : {
    "cvss3_base_score" : "5.0",
    "cvss3_scoring_vector" : "CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:L/A:H",
    "status" : "verified"
  },
  "cwe" : "CWE-131",
  "details" : [ "Calling the scanf family of functions with a %mc (malloc'd character match) in the GNU C Library version 2.7 to version 2.43 with a format width specifier with an explicit width greater than 1024 could result in a one byte heap buffer overflow.", "A flaw was found in glibc (GNU C Library). This vulnerability occurs when an application uses the `scanf` family of functions with a `%mc` format specifier, which is used for dynamically allocating memory for character input, and provides an explicit width greater than 1024. This specific combination can lead to a one-byte heap buffer overflow, potentially allowing an attacker to corrupt memory." ],
  "statement" : "Because this flaw requires that an affected application call the affected functions with an attacker-supplied value, Red Hat assesses the Attack Complexity of this flaw as High. Additionally, the flaw overflows a single byte onto the heap, so meaningful exploitation requires that the heap is structured such that a single byte can lead to an attacker-controlled outcome, or that the affected functions can be invoked with an attacker-controlled buffer base address. Regarding Attack Vector and Privileges Required, Red Hat assesses these elements as Local and Low respectively, as remote unauthenticated exploitation would require all the conditions above in a library client that listened on a network port and processed attacker-controllable data with the affected library functions.",
  "affected_release" : [ {
    "product_name" : "Red Hat Enterprise Linux 10",
    "release_date" : "2026-06-30T00:00:00Z",
    "advisory" : "RHSA-2026:33092",
    "cpe" : "cpe:/o:redhat:enterprise_linux:10.2",
    "package" : "glibc-0:2.39-126.el10_2"
  }, {
    "product_name" : "Red Hat Enterprise Linux 10.0 Extended Update Support",
    "release_date" : "2026-06-29T00:00:00Z",
    "advisory" : "RHSA-2026:33170",
    "cpe" : "cpe:/o:redhat:enterprise_linux_eus:10.0",
    "package" : "glibc-0:2.39-46.el10_0.5"
  }, {
    "product_name" : "Red Hat Enterprise Linux 6 Extended Lifecycle Support  - EXTENSION",
    "release_date" : "2026-07-09T00:00:00Z",
    "advisory" : "RHSA-2026:37395",
    "cpe" : "cpe:/o:redhat:rhel_els:6",
    "package" : "glibc-0:2.12-1.212.el6_10.4"
  }, {
    "product_name" : "Red Hat Enterprise Linux 7 Extended Lifecycle Support",
    "release_date" : "2026-07-01T00:00:00Z",
    "advisory" : "RHSA-2026:34211",
    "cpe" : "cpe:/o:redhat:rhel_els:7",
    "package" : "glibc-0:2.17-326.el7_9.6"
  }, {
    "product_name" : "Red Hat Enterprise Linux 7 Extended Lifecycle Support",
    "release_date" : "2026-07-09T00:00:00Z",
    "advisory" : "RHSA-2026:37396",
    "cpe" : "cpe:/o:redhat:rhel_els:7",
    "package" : "compat-glibc-1:2.12-4.el7_9.1"
  }, {
    "product_name" : "Red Hat Enterprise Linux 8",
    "release_date" : "2026-06-29T00:00:00Z",
    "advisory" : "RHSA-2026:33126",
    "cpe" : "cpe:/a:redhat:enterprise_linux:8",
    "package" : "glibc-0:2.28-251.el8_10.38"
  }, {
    "product_name" : "Red Hat Enterprise Linux 8",
    "release_date" : "2026-06-29T00:00:00Z",
    "advisory" : "RHSA-2026:33126",
    "cpe" : "cpe:/o:redhat:enterprise_linux:8",
    "package" : "glibc-0:2.28-251.el8_10.38"
  }, {
    "product_name" : "Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support",
    "release_date" : "2026-07-08T00:00:00Z",
    "advisory" : "RHSA-2026:36643",
    "cpe" : "cpe:/a:redhat:rhel_aus:8.4",
    "package" : "glibc-0:2.28-151.el8_4.6"
  }, {
    "product_name" : "Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On",
    "release_date" : "2026-07-08T00:00:00Z",
    "advisory" : "RHSA-2026:36643",
    "cpe" : "cpe:/a:redhat:rhel_eus_long_life:8.4",
    "package" : "glibc-0:2.28-151.el8_4.6"
  }, {
    "product_name" : "Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support",
    "release_date" : "2026-06-29T00:00:00Z",
    "advisory" : "RHSA-2026:33227",
    "cpe" : "cpe:/a:redhat:rhel_aus:8.6",
    "package" : "glibc-0:2.28-189.13.el8_6"
  }, {
    "product_name" : "Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On",
    "release_date" : "2026-06-29T00:00:00Z",
    "advisory" : "RHSA-2026:33227",
    "cpe" : "cpe:/a:redhat:rhel_eus_long_life:8.6",
    "package" : "glibc-0:2.28-189.13.el8_6"
  }, {
    "product_name" : "Red Hat Enterprise Linux 8.8 Telecommunications Update Service",
    "release_date" : "2026-06-29T00:00:00Z",
    "advisory" : "RHSA-2026:33228",
    "cpe" : "cpe:/a:redhat:rhel_tus:8.8",
    "package" : "glibc-0:2.28-225.el8_8.17"
  }, {
    "product_name" : "Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions",
    "release_date" : "2026-06-29T00:00:00Z",
    "advisory" : "RHSA-2026:33228",
    "cpe" : "cpe:/a:redhat:rhel_e4s:8.8",
    "package" : "glibc-0:2.28-225.el8_8.17"
  }, {
    "product_name" : "Red Hat Enterprise Linux 9",
    "release_date" : "2026-06-29T00:00:00Z",
    "advisory" : "RHSA-2026:33226",
    "cpe" : "cpe:/a:redhat:enterprise_linux:9",
    "package" : "glibc-0:2.34-272.el9_8"
  }, {
    "product_name" : "Red Hat Enterprise Linux 9",
    "release_date" : "2026-06-29T00:00:00Z",
    "advisory" : "RHSA-2026:33226",
    "cpe" : "cpe:/o:redhat:enterprise_linux:9",
    "package" : "glibc-0:2.34-272.el9_8"
  }, {
    "product_name" : "Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions",
    "release_date" : "2026-06-29T00:00:00Z",
    "advisory" : "RHSA-2026:33231",
    "cpe" : "cpe:/a:redhat:rhel_e4s:9.2",
    "package" : "glibc-0:2.34-60.el9_2.20"
  }, {
    "product_name" : "Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions",
    "release_date" : "2026-06-29T00:00:00Z",
    "advisory" : "RHSA-2026:33229",
    "cpe" : "cpe:/a:redhat:rhel_e4s:9.4",
    "package" : "glibc-0:2.34-100.el9_4.13"
  }, {
    "product_name" : "Red Hat Enterprise Linux 9.6 Extended Update Support",
    "release_date" : "2026-06-29T00:00:00Z",
    "advisory" : "RHSA-2026:33230",
    "cpe" : "cpe:/a:redhat:rhel_eus:9.6",
    "package" : "glibc-0:2.34-168.el9_6.25"
  }, {
    "product_name" : "Cost Management Metrics Operator 4",
    "release_date" : "2026-07-15T00:00:00Z",
    "advisory" : "RHSA-2026:39981",
    "cpe" : "cpe:/a:redhat:cost_management:4::el9",
    "package" : "costmanagement/costmanagement-metrics-rhel9-operator:1783539156"
  }, {
    "product_name" : "Red Hat Hardened Images",
    "release_date" : "2026-05-01T00:00:00Z",
    "advisory" : "RHSA-2026:12740",
    "cpe" : "cpe:/a:redhat:hummingbird:1",
    "package" : "glibc-main-2.42-12.hum1"
  }, {
    "product_name" : "Red Hat Insights proxy 1.5",
    "release_date" : "2026-07-01T00:00:00Z",
    "advisory" : "RHSA-2026:34102",
    "cpe" : "cpe:/a:redhat:insights_proxy:1.5::el9",
    "package" : "insights-proxy/insights-proxy-container-rhel9:1782890503"
  } ],
  "package_state" : [ {
    "product_name" : "Red Hat Enterprise Linux 6",
    "fix_state" : "Will not fix",
    "package_name" : "compat-glibc",
    "cpe" : "cpe:/o:redhat:enterprise_linux:6"
  }, {
    "product_name" : "Red Hat OpenShift Container Platform 4",
    "fix_state" : "Affected",
    "package_name" : "rhcos",
    "cpe" : "cpe:/a:redhat:openshift:4"
  } ],
  "references" : [ "https://www.cve.org/CVERecord?id=CVE-2026-5450\nhttps://nvd.nist.gov/vuln/detail/CVE-2026-5450\nhttps://inbox.sourceware.org/libc-announce/b11f0003-6ec1-4bd6-b9de-9e38a4efeca3@redhat.com/T/#u\nhttps://nvd.nist.gov/vuln/detail/CVE-2026-5450#range-21286997\nhttps://sourceware.org/bugzilla/show_bug.cgi?id=CVE-2026-5450" ],
  "name" : "CVE-2026-5450",
  "mitigation" : {
    "value" : "Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.",
    "lang" : "en:us"
  },
  "csaw" : false
}