https://seclists.org/oss-sec/2026/q1/90: The GNU C Library security advisories update for 2026-01-20
Published Jan 20, 2026
·Updated
Affected Software
1 affected component
GNU C Library>=2.0<=2.42
Frequently Asked Questions
1
What is the severity of GLIBC-SA-2026-0003?
GLIBC-SA-2026-0003 has been rated as a high severity vulnerability due to potential exposure of uninitialized memory.
2
How do I fix GLIBC-SA-2026-0003?
To fix GLIBC-SA-2026-0003, update the GNU C Library to version 2.43 or later.
3
What does GLIBC-SA-2026-0003 affect?
GLIBC-SA-2026-0003 affects the wordexp function when used with WRDE_REUSE and WRDE_APPEND in versions 2.0 through 2.42 of GNU C Library.
4
What is the risk of not addressing GLIBC-SA-2026-0003?
Not addressing GLIBC-SA-2026-0003 may lead to information leakage and potential disclosure of sensitive data.
5
When was GLIBC-SA-2026-0003 published?
GLIBC-SA-2026-0003 was published on January 20, 2026.