Stack-based Buffer Overflow in GNU libextractor Affects Metadata Extraction
CVE-2026-91752
Key Information:
- Vendor
Gnu
- Status
- Vendor
- CVE Published:
- 15 September 2026
Badges
What is CVE-2026-91752?
GNU libextractor, prior to version 1.15, is susceptible to a stack-based buffer overflow vulnerability in its process_star_office function. This issue arises from the improper handling of variable-length stack arrays sized based on attacker-controlled OLE2 stream data. Malicious actors can exploit this vulnerability by crafting specially designed StarOffice documents that may allocate up to 4 MB on the stack, resulting in a stack overflow. This can lead to crashes in any application that attempts to extract metadata from these documents, posing significant security risks to users relying on this software.
Affected Version(s)
libextractor 0 < 1.15
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved