CVE-2026-1767Disclosure(gnome / enterprise_linux)

LOWCVSS 8.1 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A flaw was found in the GNOME localsearch (previously known as tracker-miners) MP3 Extractor `tracker-extract-mp3` component. A remote attacker could exploit this heap buffer overflow vulnerability by providing a specially crafted MP3 file containing malformed ID3 tags. This incorrect length calculation during the parsing of performer tags can lead to a read beyond the allocated buffer, potentially causing a Denial of Service (DoS) due to a crash or enabling information disclosure.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-805

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • enterprise_linux
  • localsearch

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • Disclosure: 1 classified signal
  • 1 total mentions across 1 day

Affected systems

Products
enterprise_linuxlocalsearch

4 versions affected across 2 products

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-02-12: 102-12
Signal classification1 categories
Disclosure
1100.0%
Referenced assets4 URLs
Full discourse1 post
  • Fatih Çelik@fatihclk01
    Disclosure

    CVE-2026-1764 - https://gitlab.gnome.org/GNOME/localsearch/-/issues/425 CVE-2026-1765 - https://gitlab.gnome.org/GNOME/localsearch/-/issues/427 CVE-2026-1766 - https://gitlab.gnome.org/GNOME/localsearch/-/issues/428 CVE-2026-1767 - https://gitlab.gnome.org/GNOME/localsearch/-/issues/429

    Post summary

    The text announces four CVE identifiers and links to their respective GitLab issue pages, indicating new vulnerabilities have been reported but no further details, PoCs, exploits, or remediation information are provided.

    00043334
    466 followersView on X
CPE platform detail4 entries

4 of 4 entries

PartVendorProductVersionTarget SWTarget HW
Appgnomelocalsearch---
OSredhatenterprise_linux10.0--
OSredhatenterprise_linux8.0--
OSredhatenterprise_linux9.0--

Explore more