CVE-2026-1188Disclosure(eclipse / omr)

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

In the Eclipse OMR port library component since release 0.2.0, an API function to return the textual names of all supported processor features was not accounting for the separator inserted between processor features. If the output buffer supplied to this function was incorrectly sized, failing to account for the separator when determining when a write to the buffer was safe could lead to a buffer overflow. This issue is fixed in Eclipse OMR version 0.8.0.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-131CWE-120

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • omr

Threat summary

  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 3 classified signals
  • Peaked 1d ago at 2 mentions (2026-01-29); latest day: 1
  • 3 total mentions across 2 days

Affected systems

Vendors
Products
omr

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-01-29: 2Mentions · 2026-02-24: 1Technical Details · 2026-01-29: 201-2902-24
Signal classification1 categories
Disclosure
3100.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-01-292
Disclosure2
2026-02-241
Disclosure1
Full discourse3 posts
  • CVE@CVEnew
    Disclosure

    CVE-2026-1188 In the Eclipse OMR port library component since release 0.2.0, an API function to return the textual names of all supported processor features was not accounting for th… https://www.cve.org/CVERecord?id=CVE-2026-1188

    Post summary

    The snippet announces CVE‑2026‑1188, noting a flaw in Eclipse OMR’s API that does not account for certain processor features.

    00010252
    56.5K followersView on X
  • Matthias Knäpper@knaepp
    Disclosure

    Vulnerability in IBM® Java SDK affects IBM WebSphere Application Server and WebSphere Application Server Liberty due to CVE-2026-1188 https://tinyurl.com/26w7gbay

    Post summary

    The text announces a vulnerability (CVE-2026-1188) in IBM Java SDK that affects IBM WebSphere Application Server and Liberty.

    0000047
    108 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-1188 Buffer Overflow in Eclipse OMR Port Library API Function Prior to 0.8.0 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-1188

    Post summary

    The entry discloses a buffer‑overflow vulnerability (CVE‑2026‑1188) affecting Eclipse OMR Port Library before version 0.8.0, with a reference link but without PoC, exploit code, or patch information.

    0000082
    4.0K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appeclipseomr---

Explore more