What is CVE-2026-76166?
CVE-2026-76166 is a vulnerability in mod_cluster's AdvertiseListenerImpl where a crafted UDP multicast datagram missing required headers triggers a NullPointerException in verifyDigest(). This can lead to a denial of service on affected systems. Users should apply the relevant mod_cluster update.
Azərbaycanca: CVE-2026-76166 mod_cluster-in AdvertiseListenerImpl komponentində NullPointerException qüsuru aşkar edib. Uzaqdan hücumçu xüsusi hazırlanmış UDP multicast datagramı ilə zəruri başlıqlar olmadan verifyDigest() funksiyasında xidmət rəddinə səbəb ola bilər. Təsirlənmiş sistemlərdə mod_cluster yeniləməsi tətbiq edilməlidir.
Related CVEs
link basis: same weakness class CWE-476
FAQ2
What does an attacker need to do to exploit CVE-2026-76166?
An attacker needs to send a crafted UDP multicast datagram missing required headers to the AdvertiseListenerImpl component.
What is the potential impact of CVE-2026-76166?
This vulnerability can cause a NullPointerException in the verifyDigest() function, leading to a denial of service on affected systems.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.