{"id":"SUSE-SU-2026:21807-1","summary":"Security update for glibc","details":"This update for glibc fixes the following issues\n\n- CVE-2026-4046: assertion failure when converting inputs may be used to remotely crash an application (bsc#1261206).\n- CVE-2026-5450: stdio-common: scanf %mc pattern will cause heap overflow when width \u003e 1024 (bsc#1262465).\n- CVE-2026-5928: libio: ungetwc could be used to leak data on special conditions (bsc#1262464).\n","modified":"2026-05-28T18:24:02.365123796Z","published":"2026-05-18T05:31:22Z","related":["CVE-2026-4046","CVE-2026-5450","CVE-2026-5928"],"upstream":["CVE-2026-4046","CVE-2026-5450","CVE-2026-5928"],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2026/suse-su-202621807-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1261206"},{"type":"REPORT","url":"https://bugzilla.suse.com/1262464"},{"type":"REPORT","url":"https://bugzilla.suse.com/1262465"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-4046"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5450"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-5928"}],"schema_version":"1.7.5"}