{"id":"BIT-gdal-2026-49014","details":"In GDAL 3.1.0 through 3.13.0, scanForGeometryContainers in the netCDF driver allows code execution via a stack-based buffer overflow. It reads a geometry attribute into a fixed-size stack buffer without validating the attribute length. The attacker embeds the exploit as an oversized geometry attribute in a crafted NetCDF file. This achieves arbitrary code execution on the server running GDAL. This is in frmts/netcdf/netcdfsg.cpp.","aliases":["CVE-2026-49014","GHSA-wphc-7cm7-8mf7","PYSEC-2026-193"],"modified":"2026-09-10T16:01:31.589248121Z","published":"2026-06-05T08:44:46.134Z","database_specific":{"severity":"High","cpes":["cpe:2.3:a:osgeo:gdal:*:*:*:*:*:*:*:*"]},"references":[{"type":"ADVISORY","url":"https://github.com/OSGeo/gdal/issues/14594"},{"type":"WEB","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-49014"}],"affected":[{"package":{"name":"gdal","ecosystem":"Bitnami","purl":"pkg:bitnami/gdal"},"ranges":[{"type":"SEMVER","events":[{"introduced":"3.1.0"},{"fixed":"3.13.1"}]}],"database_specific":{"source":"https://github.com/bitnami/vulndb/tree/main/data/gdal/BIT-gdal-2026-49014.json"},"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}],"schema_version":"1.9.0"}