CVE-2026-33851

Source
https://cve.org/CVERecord?id=CVE-2026-33851
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-33851.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-33851
Published
2026-03-24T05:48:17Z
Modified
2026-08-12T15:33:29Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H CVSS Calculator
Summary
Improper Restriction of Operations within the Bounds of a Memory Buffer in joncampbell123 doslib
Details

Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in joncampbell123 doslib.This issue affects doslib: before doslib-20250729.

Database specific
{
    "cna_assigner": "GovTech CSG",
    "cwe_ids": [
        "CWE-119"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/33xxx/CVE-2026-33851.json"
}
References

Affected packages

Git / github.com/joncampbell123/doslib

Affected ranges

Type
GIT
Repo
https://github.com/joncampbell123/doslib
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Database specific
Show details
{
    "extracted_events": [
        {
            "introduced": "0"
        },
        {
            "fixed": "doslib-20250729"
        }
    ],
    "source": [
        "AFFECTED_FIELD",
        "DESCRIPTION"
    ]
}

Affected versions

Other
20141027-095935-commit-ce747d3d6918fb0c25a813ebc180cc9f4d0edeb9
20161021-122358-commit-199ec05ee8be73b636e2aca6904fddea908bc1fe
cga-snowman-1
cga-splitscreen-bizatch
dosamp-complete-with-windows
dosamp-final-20171011
dosamp-try-this-20171010
dosamp-with-file-open-prompt
doslib-01140e94cf9c8438ea50abc791e2e740bf5c95e9-dosamp
doslib-20140712-115956-commit-8327f81b347efe2a951abc5f9fa3080d85cdce78
doslib-20140719-232134-commit-968ebb26b0a96efe2ea620ae431b434e15e330ff
doslib-20140804-024804-commit-40583e04f5962579af0fa2defeab808fc9b34951
doslib-20140913-163324-commit-5fe520fa015a2ebf7a1c28d368646a7375991194
doslib-20140920-230334-commit-f3ace028b272fee3f9a634abd9513a8ebf9b1f23
doslib-20160208-013358-commit-9212136735acf8cefeb6740136603a1a779f5bb4
doslib-20160313-155310-commit-c55f2f3f22d9ab3ca64631629378512ab7886fbe
doslib-20161022-225805-commit-807e8cab16f48ea788400f9253204f18718290ef
doslib-20161113-083809-commit-f5ac4b3f27421816766c23ba7dc270b0dc56124a
doslib-20161126-100319-commit-6089c747b7ab40f99459e731d1bec60f465d7dad
doslib-20161127-110430-commit-7b7e832198cf229af1f0e38ca42f658fb2c0f9bd
doslib-20161127-140059-commit-f2025af69c8c48a791211ebb5d4cec8134d29e4f
doslib-20170111-095936-commit-3d4c195f15b66fe744b5aa8ea3d57d9fa0c375d8
doslib-20171209
doslib-20171227
doslib-20180318-0118
doslib-20180521-2203
doslib-20180528
doslib-20180619
doslib-20180627
doslib-20180627-1441
doslib-20180702-1936
doslib-20180716
doslib-20180724-1807
doslib-20180729-0059
doslib-20180729-2127
doslib-20180731-0003
doslib-20180731-0905
doslib-2019-09-25-0027
doslib-20190103
doslib-20190130
doslib-20190924
doslib-20201013-2322
doslib-20241126
doslib-dosamp-and-sbtest-20171030
doslib-sb-ts-ps-2017-10-22
doslib-win16-ne-insight
somethingpc98-1
untagged-5f596c4e72ecda6cebec

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-33851.json"
vanir_signatures
[
    {
        "deprecated": false,
        "digest": {
            "line_hashes": [
                "171556133322698239848332824409438122542",
                "214067394073414573845509126969664402016",
                "265145720215966254877734110698138431621"
            ],
            "threshold": 0.9
        },
        "id": "CVE-2026-33851-63089a5b",
        "signature_type": "Line",
        "signature_version": "v1",
        "source": "https://github.com/joncampbell123/doslib/commit/473980b3f58d2dc4a6e614b843aba1cec4c03df1",
        "target": {
            "file": "testset/dispbmp/windows/setdib2d/general1.c"
        }
    },
    {
        "deprecated": false,
        "digest": {
            "function_hash": "24621310288776334697355967164843876279",
            "length": 10311
        },
        "id": "CVE-2026-33851-89e4c81a",
        "signature_type": "Function",
        "signature_version": "v1",
        "source": "https://github.com/joncampbell123/doslib/commit/473980b3f58d2dc4a6e614b843aba1cec4c03df1",
        "target": {
            "file": "testset/dispbmp/windows/comptbmp/general1.c",
            "function": "WinMain"
        }
    },
    {
        "deprecated": false,
        "digest": {
            "function_hash": "3099331034138190822004151525481910508",
            "length": 11121
        },
        "id": "CVE-2026-33851-8e53d488",
        "signature_type": "Function",
        "signature_version": "v1",
        "source": "https://github.com/joncampbell123/doslib/commit/473980b3f58d2dc4a6e614b843aba1cec4c03df1",
        "target": {
            "file": "testset/dispbmp/windows/setdib2d/general1.c",
            "function": "WinMain"
        }
    },
    {
        "deprecated": false,
        "digest": {
            "line_hashes": [
                "171556133322698239848332824409438122542",
                "214067394073414573845509126969664402016",
                "265145720215966254877734110698138431621"
            ],
            "threshold": 0.9
        },
        "id": "CVE-2026-33851-eed577ba",
        "signature_type": "Line",
        "signature_version": "v1",
        "source": "https://github.com/joncampbell123/doslib/commit/473980b3f58d2dc4a6e614b843aba1cec4c03df1",
        "target": {
            "file": "testset/dispbmp/windows/comptbmp/general1.c"
        }
    }
]
vanir_signatures_modified
"2026-08-12T15:33:29Z"