CVE-2026-78161

A vulnerability was found in warmcat libwebsockets 4.5.0. Impacted is the function report_raw_cbor of the file lib/misc/lecp.c of the component LECP CBOR Recording. The manipulation results in out-of-bounds write. The attack can be launched remotely. The exploit has been made public and could be used. The patch is identified as 1d44554a1bb262db63ff4e240152a9deecd99054. It is best practice to apply a patch to resolve this issue.
Configurations

No configuration.

History

No history.

Information

Published : 2026-08-24 01:16

Updated : 2026-08-24 18:17


NVD link : CVE-2026-78161

Mitre link : CVE-2026-78161

CVE.ORG link : CVE-2026-78161


JSON object : View

Products Affected

No product.

CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

CWE-787

Out-of-bounds Write