JLSEC-2026-788

Source
https://github.com/JuliaLang/SecurityAdvisories.jl/blob/main/advisories/published/2026/JLSEC-2026-788.md
Import Source
https://github.com/JuliaLang/SecurityAdvisories.jl/tree/generated/osv/2026/JLSEC-2026-788.json
JSON Data
https://api.osv.dev/v1/vulns/JLSEC-2026-788
Upstream
  • CVE-2026-40553
Published
2026-07-25T03:14:11.289Z
Modified
2026-07-25T03:30:03.699592657Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
  • 5.1 (Medium) CVSS_V4 - CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:L/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X CVSS Calculator
Summary
Buffer overflow in gawk's `readdir.c` can cause denial of service and possible code execution
Details

Buffer overflow vulnerability has been found in "extension/readdir.c" program file of gawk (ftype() routine). This issue could be used to crash the program and potentially to achieve code execution, although the latter has not been confirmed to be feasible. It affects gawk in versions 5.4.0 and below.

Database specific
{
    "license": "CC-BY-4.0",
    "sources": [
        {
            "id": "CVE-2026-40553",
            "html_url": "https://nvd.nist.gov/vuln/detail/CVE-2026-40553",
            "imported": "2026-07-24T13:47:27.345Z",
            "url": "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2026-40553",
            "published": "2026-07-13T13:16:37.147Z",
            "modified": "2026-07-14T01:10:20.120Z",
            "database_specific": {
                "status": "Analyzed"
            }
        }
    ]
}
References

Affected packages

Julia / gawk_jll

Package

Name
gawk_jll
Purl
pkg:julia/gawk_jll?uuid=054acbdd-7fbc-53f6-b51a-0fe4f8189fb8

Affected ranges

Type
SEMVER
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.4.1+0

Database specific

source
"https://github.com/JuliaLang/SecurityAdvisories.jl/tree/generated/osv/2026/JLSEC-2026-788.json"