OSV-2026-514

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/tmux/OSV-2026-514.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2026-514
Published
2026-04-03T00:09:42.155641Z
Modified
2026-04-03T00:09:42.155954Z
Summary
Heap-buffer-overflow in format_expand1
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=498472071

Crash type: Heap-buffer-overflow READ 1
Crash state:
format_expand1
format_expand
format-fuzzer.c
References

Affected packages

OSS-Fuzz / tmux

Package

Name
tmux
Purl
pkg:generic/tmux

Affected ranges

Type
GIT
Repo
https://github.com/tmux/tmux.git
Events

Ecosystem specific

{
    "severity": "MEDIUM"
}

Database specific

fixed_range
"dc12da45736f03205de0841175e020a27d574290:43e2942fa05fed779324fd379bb1577ef35c158d"
source
"https://github.com/google/oss-fuzz-vulns/blob/main/vulns/tmux/OSV-2026-514.yaml"
introduced_range
"6324dae114a1f8c9e1454914a70cba0ded7f5b34:a30fc69f868fa0adf85b0957fe3f67357fe73d73"