In Eclipse 4diac FORTE versions 3.0.0 to 3.1.0, a specially crafted DELETE connection command to the management interface can lead to a dangling pointer. This allows subsequent commands to access freed memory (use-after-free).
References
| Link | Resource |
|---|---|
| https://gitlab.eclipse.org/security/cve-assignment/-/work_items/109 | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2026-06-18 14:17
Updated : 2026-07-02 20:04
NVD link : CVE-2026-9158
Mitre link : CVE-2026-9158
CVE.ORG link : CVE-2026-9158
JSON object : View
Products Affected
eclipse
- 4diac_forte
CWE
CWE-416
Use After Free
