CVE-2026-53937

Source
https://cve.org/CVERecord?id=CVE-2026-53937
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-53937.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-53937
Aliases
  • GHSA-74gp-qhv5-v493
Published
2026-09-08T23:21:46Z
Modified
2026-09-12T03:30:49Z
Severity
  • 6.2 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
MCP Kotlin SDK's unbounded line buffer in StdioServerTransport/StdioClientTransport leads to memory exhaustion (DoS)
Details

MCP Kotlin SDK is the Kotlin Multiplatform software development kit for the Model Context Protocol. In versions 0.7.0 through 0.12.0, ReadBuffer.append in kotlin-sdk-core/src/commonMain/kotlin/io/modelcontextprotocol/kotlin/sdk/shared/ReadBuffer.kt writes every chunk of bytes received from the stdio transport into a kotlinx.io.Buffer with no size cap. Frames are extracted from that buffer only when a \n (0x0a) byte is observed. A peer that streams bytes without ever sending a newline causes the internal buffer to grow indefinitely until the JVM (or the surrounding host process) is OOM-killed. The leak is amplified by StdioServerTransport and StdioClientTransport, which both queue raw chunks through a kotlinx.coroutines.channels.Channel<ByteArray>(Channel.UNLIMITED) and then call readBuffer.append(chunk) without backpressure or size guard. This is a remote-pre-auth denial of service whenever an SDK stdio server's stdin is fed by an untrusted or attacker-controlled producer (for example: a host program that exec's the MCP server as a subprocess and pipes through bytes received from a network peer, or a sidecar wrapper that proxies bytes from an HTTP endpoint to the stdio transport). Version 0.13.0 fixes the issue.

Database specific
{
    "cna_assigner": "GitHub_M",
    "cwe_ids": [
        "CWE-400",
        "CWE-770"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/53xxx/CVE-2026-53937.json"
}
References

Affected packages

Git / github.com/modelcontextprotocol/kotlin-sdk

Affected ranges

Type
GIT
Repo
https://github.com/modelcontextprotocol/kotlin-sdk
Events
Database specific
Show details
{
    "extracted_events": [
        {
            "introduced": "0.7.0"
        },
        {
            "fixed": "0.12.0"
        }
    ],
    "source": [
        "DESCRIPTION",
        "REFERENCES"
    ]
}

Affected versions

0.*
0.11.0
0.11.1
0.12.0
0.7.1
0.7.2
0.7.2-alpha1
0.7.2-alpha2
0.7.2-alpha3
0.7.4
0.7.5
0.7.6
0.7.7
0.8.0
0.8.1
0.8.3
0.9.0
v0.*
v0.7.0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-53937.json"