CVE detail
CVE-2026-35091
A flaw was found in Corosync. A remote unauthenticated attacker can exploit a wrong return value vulnerability in the Corosync membership commit token sanity check by sending a specially crafted User Datagram Protocol (UDP) packet. This can lead to an out-of-bounds read, causing a denial of service (DoS) and potentially disclosing limited memory contents
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 28.9 · diversity 10.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
17 source links · newest first
- https://bugzilla.redhat.com/show_bug.cgi?id=2453813bugzilla.redhat.com
No excerpt available.
Exploitbugzilla.redhat.comApr 1, 2026, 2:16 PM - https://bugzilla.redhat.com/show_bug.cgi?id=2453169bugzilla.redhat.com
No excerpt available.
Exploitbugzilla.redhat.comApr 1, 2026, 2:16 PM - https://access.redhat.com/security/cve/CVE-2026-35091access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 1, 2026, 2:16 PM - https://access.redhat.com/errata/RHSA-2026:20916access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 1, 2026, 2:16 PM - https://access.redhat.com/errata/RHSA-2026:19200access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 1, 2026, 2:16 PM - https://access.redhat.com/errata/RHSA-2026:19043access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 1, 2026, 2:16 PM - https://access.redhat.com/errata/RHSA-2026:14216access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 1, 2026, 2:16 PM - https://access.redhat.com/errata/RHSA-2026:14215access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 1, 2026, 2:16 PM - https://access.redhat.com/errata/RHSA-2026:14214access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 1, 2026, 2:16 PM - https://access.redhat.com/errata/RHSA-2026:14213access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 1, 2026, 2:16 PM - https://access.redhat.com/errata/RHSA-2026:14212access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 1, 2026, 2:16 PM - https://access.redhat.com/errata/RHSA-2026:14211access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 1, 2026, 2:16 PM - https://access.redhat.com/errata/RHSA-2026:14210access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 1, 2026, 2:16 PM - https://access.redhat.com/errata/RHSA-2026:14205access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 1, 2026, 2:16 PM - https://access.redhat.com/errata/RHSA-2026:13673access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 1, 2026, 2:16 PM - https://access.redhat.com/errata/RHSA-2026:13657access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 1, 2026, 2:16 PM - https://access.redhat.com/errata/RHSA-2026:13644access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 1, 2026, 2:16 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-35092CVSS 7.5 · High
A flaw was found in Corosync. An integer overflow vulnerability in Corosync's join message sanity validation allows a remote, unauthenticated attacker to send crafted User Datagra…
- CVE-2025-14512CVSS 6.5 · Medium
A flaw was found in glib. This vulnerability allows a heap buffer overflow and denial-of-service (DoS) via an integer overflow in GLib's GIO (GLib Input/Output) escape_byte_string…
- CVE-2024-45777CVSS 6.7 · Medium
A flaw was found in grub2. The calculation of the translation buffer when reading a language .mo file in grub_gettext_getstr_from_position() may overflow, leading to a Out-of-boun…
- CVE-2024-12085CVSS 7.5 · High
A flaw was found in rsync which could be triggered when rsync compares file checksums. This flaw allows an attacker to manipulate the checksum length (s2length) to cause a compari…
- CVE-2021-3697CVSS 7.0 · High
A crafted JPEG image may lead the JPEG reader to underflow its data pointer, allowing user-controlled data to be written in heap. To a successful to be performed the attacker need…
- CVE-2021-3696CVSS 4.5 · Medium
A heap out-of-bounds write may heppen during the handling of Huffman tables in the PNG reader. This may lead to data corruption in the heap space. Confidentiality, Integrity and A…