All vulnerabilities
CRITICALSupply chain

CVE-2026-55209

PyPI · resdata

Summary

resdata has Classic Buffer Overflow, Improper Validation of Array Index, NULL Pointer Dereference and Out-of-bounds Read

Advisory details

Impact

Prior to version 6.2.9 resdata would not correctly validate input in GRDECL files. The severity rating assumes that resdata is used to parse untrused files in a networking context such as a webservice.

Patches

The bug has been patched starting with version 6.2.9.

References