{"id":"CVE-2026-88359","published":"2026-09-24T14:18:18.320","lastModified":"2026-09-25T17:17:17.490","description":"libfyaml 0.9.6 contains a stack exhaustion vulnerability in fy_atom_iter_format(). When processing a specially crafted YAML document containing a very large literal or folded block scalar, the function repeatedly grows an internal buffer using alloca() inside a loop. The allocated stack memory is not released until the function returns, causing cumulative stack growth that can exceed the process stack limit and result in SIGSEGV and denial of service.","cvssScore":6.5,"cvssSeverity":"MEDIUM","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","cwes":["CWE-770"],"vendors":[],"products":[],"references":[{"url":"https://github.com/pantoniou/libfyaml/commit/20502068902d58c076da873117985798df2c7e74","tags":[]},{"url":"https://github.com/pantoniou/libfyaml/commit/93741a7c9331da9da65ef7a25f2d7d6a817a1c29","tags":[]},{"url":"https://github.com/pantoniou/libfyaml/issues/315","tags":[]},{"url":"https://github.com/pantoniou/libfyaml/issues/315","tags":[]}],"exploitRefs":[{"url":"https://github.com/pantoniou/libfyaml/commit/20502068902d58c076da873117985798df2c7e74","tags":[]},{"url":"https://github.com/pantoniou/libfyaml/commit/93741a7c9331da9da65ef7a25f2d7d6a817a1c29","tags":[]},{"url":"https://github.com/pantoniou/libfyaml/issues/315","tags":[]},{"url":"https://github.com/pantoniou/libfyaml/issues/315","tags":[]}],"hasPoc":true,"ai":null}