CVE-2026-107167

NameCVE-2026-107167
DescriptionA flaw was found in m17n-lib. A user providing specially crafted text input can trigger a heap use-after-free condition during input-method state transitions. Under specific conditions, the library frees an internal input context object but subsequently attempts to write to that freed memory. This issue can cause applications relying on the library to crash, leading to a Denial of Service (DoS), or potentially allow arbitrary code execution.
SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
m17n-lib (PTS)bookworm1.8.0-6vulnerable
trixie1.8.5-1vulnerable
forky, sid1.8.6-1vulnerable

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
m17n-libsource(unstable)(unfixed)

Notes

https://bugzilla.redhat.com/show_bug.cgi?id=2547408

Search for package or bug name: Reporting problems