DEBIAN-CVE-2026-70368

Source
https://security-tracker.debian.org/tracker/CVE-2026-70368
Import Source
https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2026-70368.json
JSON Data
https://api.osv.dev/v1/vulns/DEBIAN-CVE-2026-70368
Upstream
Published
2026-08-04T14:16:32.693Z
Modified
2026-08-08T11:00:10.837870454Z
Severity
  • 6.5 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L CVSS Calculator
Summary
[none]
Details

A stack-based out-of-bounds read vulnerability exists in the "s_vlog" function of stunnel, when handling oversized log messages via "vsnprintf". A remote attacker with network access to a stunnel service can send protocol inputs that trigger a log message longer than 1024 bytes, leading to an out-of-bounds stack read and a potential crash. In certain corner cases, the same vulnerability could be used to replace a series of trailing "\n" characters with "\0".

References

Affected packages

Debian:14 / stunnel

Package

Name
stunnel
Purl
pkg:deb/debian/stunnel?arch=source&distro=forky

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3:5.80-1

Affected versions

3.*
3.10-0potato1
3.22-1
2:3.*
2:3.26-2
2:3.26-2.1
2:3.26-3
2:3.26-4
2:3.26-5
2:3.26-6
2:3.26-7
2:3.26-8
2:3.26-9
2:3.26-10
2:3.26-11
2:3.26-dfsg-1
2:3.26-dfsg-2
3:5.*
3:5.78-3
3:5.78-4
3:5.78-5
3:5.79-1
3:5.79-2

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Database specific

source
"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2026-70368.json"