CVE-2026-63381 | Libevent up to 2.1.12/2.2.1 Buffer buffer.c evbuffer_add_buffer_reference out_total_len use after free
A vulnerability was found in Libevent up to 2.1.12/2.2.1. It has been classified as critical. Affected by this vulnerability is the function evbuffer_add_buffer_reference of the file buffer.c of the component Buffer. This manipulation of the argument out_total_len causes use after free.
This vulnerability is handled as CVE-2026-63381. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More