What is CVE-2026-19643?
An out-of-bounds read vulnerability has been identified in the Base64 decoder of Amazon aws-sdk-cpp versions prior to 1.11.862. On certain platforms, a remote authenticated user could crash an application by providing specially crafted Base64-encoded input. Users should upgrade to version 1.11.862 to address this issue.
Azərbaycanca: Amazon aws-sdk-cpp kitabxanasının 1.11.862 versiyasından əvvəlki versiyalarında Base64 dekoderində "out-of-bounds read" zəifliyi aşkar edilib. Bəzi platformalarda uzaqdan autentifikasiya olunmuş istifadəçi xüsusi hazırlanmış Base64 məlumatı göndərərək tətbiqin çökməsinə səbəb ola bilər. Problemi aradan qaldırmaq üçün kitabxana 1.11.862 və ya daha yeni versiyaya yenilənməlidir.
Related CVEs
link basis: same weakness class CWE-125
FAQ2
Which versions of the Amazon aws-sdk-cpp library are affected by CVE-2026-19643?
This vulnerability affects all versions of the library prior to version 1.11.862.
What must an attacker do to exploit CVE-2026-19643?
On certain platforms, a remote authenticated attacker can exploit the vulnerability by providing specially crafted Base64-encoded input.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.