CVE-2026-2016
MEDIUMhappyfish100 libfastcommon <1.0.84 - Buffer Overflow
Title source: llmDescription
A security vulnerability has been detected in happyfish100 libfastcommon up to 1.0.84. Affected by this vulnerability is the function base64_decode of the file src/base64.c. The manipulation leads to stack-based buffer overflow. Local access is required to approach this attack. The exploit has been disclosed publicly and may be used. The identifier of the patch is 82f66af3e252e3e137dba0c3891570f085e79adf. Applying a patch is the recommended action to fix this issue.
References (8)
Scores
CVSS v3
5.3
EPSS
0.0002
EPSS Percentile
6.3%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Classification
CWE
CWE-119
CWE-121
CWE-787
Status
published
Affected Products (1)
happyfish100/libfastcommon
< 1.0.84
Timeline
Published
Feb 06, 2026
Tracked Since
Feb 18, 2026