Skip to main content

Tag: heap based buffer overflow

3 articles

Network equipment and technicians in a blurred background with a prominent device or screen in the foreground.

F5 Discloses Zero-Day Flaw in BIG-IP APM Exploited for Unauthenticated RCE

A critical flaw in F5's BIG-IP Access Policy Manager is being exploited by attackers, allowing them to run code on the system without logging in. This severe vulnerability, tracked as CVE-2026-94127, has a near-perfect score of 9.8/10 on CVSS v3.1 and enables unauthenticated remote code execution.

Analyst 207
Computer screen with file archiver program open, surrounded by office elements.

7-Zip Flaw Exposes Systems to Code Execution Risk

A newly discovered flaw in 7-Zip, tracked as CVE-2026-14266, leaves systems vulnerable to code execution attacks, allowing hackers to execute code in the context of the current process. Fortunately, a fix is available in 7-Zip version 26.02, which patches the heap-based buffer overflow issue.

Analyst 207
Concerned computer user looks at screen amidst paperwork and files.

7-Zip Patches RCE Flaw in XZ-Compressed Data Handling

Don't risk your files! 7-Zip's latest update, version 26.02, patches a critical vulnerability that could let hackers take control when you open a malicious archive.

Analyst 207