Stack Overflow Vulnerability in CodeChecker by Ericsson
CVE-2026-58106
2LOW
What is CVE-2026-58106?
A stack overflow vulnerability exists in CodeChecker prior to version 6.28.2, resulting from improper usage of the safe_strcpy() function. The design flaw arises when the function writes beyond the allocated buffer size, causing a two-byte stack overflow each time it is invoked. This vulnerability can be exploited by providing a path longer than the defined limits, leading to potential overwrites and unpredictable application behavior.
Affected Version(s)
CodeChecker 0 <= 6.28.2
