Stack-based buffer overflow in Gaia - CVE-2026-91843
Published: September 16, 2026
Vulnerability details
The vulnerability allows a remote attacker to execute arbitrary code with root privileges.
The vulnerability exists due to a stack-based buffer overflow in the login process of Security Management and Log Servers when processing an unauthenticated login. A remote attacker can submit an excessively long username to execute arbitrary code with root privileges.