Logo
vulnerabilityCVE-2026-40467
Name
CVE-2026-40467
Source
NVD ( link)Debian ( link)
Description
Use After Free vulnerability has been found in "io.c" program file of gawk (do_getline_redir() routine). This issue may lead to a crash. It affects gawk in versions 5.4.0 and below.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
gawk
Patched

Vulnerability Ratings#


5.1
CVSSv4
7.5
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
yocto
kirkstone
5.1.1
Exploitable
yocto
master
5.4.1
Not Affected

Resolved with patches#


gawk (yocto:scarthgap)

#
Title
Author
Resolve
1
Small memory management fix in io.c.
"Arnold D. Robbins" <arnold@skeeve.com>
CVE-2026-40467