CVE-2026-95509: Out-of-bounds read vulnerability in string formatting impacts Qt for MCUs
Published Sep 29, 2026
·Updated
Strings optimized for Latin-1 displaying Latin-1 characters cause incorrect String.arg() formatting by an incorrect buffer size calculation, causing out-of-bounds reading.
Affected Software
1 affected component
Qt Qt for MCUs
Event History
Sep 29, 2026
CVE Published
via MITRE·10:40 AM
Data Sourced
via MITRE·10:40 AM
DescriptionWeakness
Data Sourced
via NVD·11:16 AM
DescriptionSeverityWeakness