UNKNOWN Microsoft

CVE-2026-63384

Libevent: `evtag_unmarshal_header()` decodes a wire `uint32` length into a signed `int` return value.

Microsoft Security Update 2026-Aug: Libevent: `evtag_unmarshal_header()` decodes a wire `uint32` length into a signed `int` return value.

Affected Products

References

Published: 2026-08-11 · Source: Microsoft · Feed updated: 2026-10-04
This unknown severity vulnerability was published on 2026-08-11 via Microsoft. Affected: azl3 mysql 8.0.46-1 on Azure Linux 3.0, azl3 openmpi 4.1.9a1-3 on Azure Linux 3.0, azl3 libevent 2.1.12-1 on Azure Linux 3.0 and 3 more.
vulnfeed aggregates 10524 vulnerabilities from NVD, CISA KEV, Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.