CVE-2026-63381 | Libevent up to 2.1.12/2.2.1 Buffer buffer.c evbuffer_add_buffer_reference out_total_len use after free

SecurityVulns

A vulnerability was found in Libevent up to 2.1.12/2.2.1. It has been classified as critical. Affected by this vulnerability is the function evbuffer_add_buffer_reference of the file buffer.c of the component Buffer. This manipulation of the argument out_total_len causes use after free.

This vulnerability is handled as CVE-2026-63381. The attack can be initiated remotely. There is not any exploit available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More