CVE-2026-33491

Zen C is a systems programming language that compiles to human-readable GNU C/C11. Prior to version 0.4.4, a stack-based buffer overflow vulnerability in the Zen C compiler allows attackers to cause a compiler crash or potentially execute arbitrary code by providing a specially crafted Zen C source file (`.zc`) with excessively long struct, function, or trait identifiers. Users are advised to update to Zen C version v0.4.4 or later to receive a patch.
References
Link Resource
https://github.com/zenc-lang/zenc/security/advisories/GHSA-rv74-w6q7-h8xr Exploit Mitigation Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:zenc-lang:zen_c:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-03-26 19:17

Updated : 2026-06-17 10:37


NVD link : CVE-2026-33491

Mitre link : CVE-2026-33491

CVE.ORG link : CVE-2026-33491


JSON object : View

Products Affected

zenc-lang

  • zen_c
CWE
CWE-121

Stack-based Buffer Overflow

CWE-787

Out-of-bounds Write