Graphite before 1.3.15 has an integer underflow and resultant out-of-bounds write via Graphite actions, because slotat does not ensure that an offset is within the allowed slot-map range.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 05 Jun 2026 03:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Graphite before 1.3.15 has an integer underflow and resultant out-of-bounds write via Graphite actions, because slotat does not ensure that an offset is within the allowed slot-map range. | |
| First Time appeared |
Graphite Project
Graphite Project graphite |
|
| Weaknesses | CWE-191 | |
| CPEs | cpe:2.3:a:graphite_project:graphite:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Graphite Project
Graphite Project graphite |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-06-05T02:20:17.663Z
Reserved: 2026-06-05T02:14:32.977Z
Link: CVE-2026-50593
No data.
Status : Received
Published: 2026-06-05T04:17:15.010
Modified: 2026-06-05T04:17:15.010
Link: CVE-2026-50593
No data.
OpenCVE Enrichment
No data.
Weaknesses