{"id":"CVE-2026-24799","summary":"A heap-based buffer over-read or buffer overflow in davisking/dlib","details":"Out-of-bounds Write, Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in davisking dlib (dlib/external/zlib modules). This vulnerability is associated with program files inflate.C.\n\nThis issue affects dlib: before v19.24.9.","modified":"2026-08-12T03:51:41.540805928Z","published":"2026-01-27T08:31:36.371Z","database_specific":{"cwe_ids":["CWE-120","CWE-787"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/24xxx/CVE-2026-24799.json","cna_assigner":"GovTech CSG"},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/24xxx/CVE-2026-24799.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-24799"},{"type":"FIX","url":"https://github.com/davisking/dlib/pull/3063"},{"type":"PACKAGE","url":"https://github.com/davisking/dlib"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/davisking/dlib","events":[{"introduced":"0"},{"fixed":"9c639e3091b8c41bc70621e6b95fdfd6edc46910"}],"database_specific":{"extracted_events":[{"introduced":"0"},{"fixed":"v19.24.9"}],"source":["AFFECTED_FIELD","DESCRIPTION"]}}],"versions":["v19.24.8","v19.24.7","v19.24.6","v19.24.5","v19.24.4","v19.24.3","v19.24.2","v19.24","v19.23","v19.22","v19.21","v19.20","v19.19","v19.18","v19.17","v19.16","v19.15","v19.14","v19.13","v19.12","v19.11","v19.10","v19.9","v19.8","v19.7","v19.6","v19.5","v19.4","v19.3","v19.2","v19.1","v19.0","before_dnn_serialization_cleanup","v18.17","v18.16","v18.15","v18.14","v18.13","v18.11","v18.10","v18.9","v18.8","v18.7","v18.6","v18.5","v18.3","v18.2","v18.1","v18.0","v17.49","v17.48","v17.47","v17.46","v17.45","v17.44","v17.43","v17.42","v17.41","v17.40","v17.39"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-24799.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V4","score":"CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:A/VC:N/VI:L/VA:H/SC:N/SI:L/SA:L/S:N/AU:Y/R:U/V:C/RE:L/U:Amber"}]}