HomeDefectsLIN1024-16515
Acknowledged

LIN1024-16515 : Security Advisory - protobuf - CVE-2026-6409

Created: Apr 17, 2026    Updated: Apr 28, 2026
Found In Version: 10.24.33.2
Severity: Standard
Applicable for: Wind River Linux LTS 24
Component/s: Userspace

Description

A Denial of Service (DoS) vulnerability exists in the Protobuf PHP library during the parsing of untrusted input. Maliciously structured messages—specifically those containing negative varints or deep recursion—can be used to crash the application, impacting service availability.