CVE-2026-7836: hextoint macro uppercase bug
Published May 21, 2026
·Updated
An incorrect calculation in the hextoint macro in Netatalk 2.0.0 through 4.4.2 due to improper uppercase character handling allows a remote authenticated attacker to cause limited data modification via crafted hexadecimal input.
Affected Software
1 affected component
Netatalk Netatalk>=2.0.0<=4.4.2
Event History
May 21, 2026
CVE Published
via MITRE·07:35 AM
Data Sourced
via MITRE·07:35 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-7836?
The severity of CVE-2026-7836 is classified as low with a CVSS score of 3.1.
2
How do I fix CVE-2026-7836?
To fix CVE-2026-7836, upgrade to Netatalk version 4.5.0 or later.
3
What is the nature of CVE-2026-7836?
CVE-2026-7836 is a vulnerability related to a hextoint macro uppercase bug in Netatalk.
4
Which versions of Netatalk are affected by CVE-2026-7836?
Netatalk versions 2.0.0 through 4.4.2 are affected by CVE-2026-7836.
5
When was CVE-2026-7836 published?
CVE-2026-7836 was published on May 21, 2026.