MEDIUM 6.0 NVD
CVE-2026-19642
An out-of-bounds write issue in the Base64 decoder in Amazon aws-sdk-cpp before 1.11.862 might allow a remote authenticated user to cause a crash or heap memory
An out-of-bounds write issue in the Base64 decoder in Amazon aws-sdk-cpp before 1.11.862 might allow a remote authenticated user to cause a crash or heap memory corruption in an application that processes crafted Base64-encoded input.
To remediate this issue, users should upgrade to version 1.11.862.
References
- https://aws.amazon.com/security/security-bulletins/2026-080-aws/
- https://github.com/aws/aws-sdk-cpp/releases/tag/1.11.862
- https://github.com/aws/aws-sdk-cpp/security/advisories/GHSA-wxx3-prfc-69xx
This medium severity vulnerability with a CVSS score of 6.0 was published on 2026-08-12 via NVD.
vulnfeed aggregates 10542 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.