---
id: CVE-2026-43958
title: 'A flaw was found in rrdcached, a component of rrdtool'
summary: >-
  A flaw was found in rrdcached, a component of rrdtool. A local attacker with
  access to a rrdcached socket can exploit a stack-based buffer overflow by
  sending an oversized CREATE request. This vulnerability can lead to a denial
  of servic…
severity: high
cvss: 7.8
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'
cwe:
  - CWE-121
vendor: Red Hat
product: rrdtool
affected:
  - rrdtool (all versions)
  - rrdtool (all versions)
  - rrdtool (all versions)
  - rrdtool (all versions)
  - rrdtool (all versions)
  - rrdtool (all versions)
  - rrdtool (all versions)
patched:
  - enterprise_linux_appstream_eus_v_10_0
  - enterprise_linux_appstream_v_10
  - enterprise_linux_appstream_v_8
  - enterprise_linux_appstream_v_9
  - enterprise_linux_codeready_linux_builder_v_10
  - enterprise_linux_crb_v_8
  - enterprise_linux_codeready_linux_builder_v_9
published: '2026-06-01'
updated: '2026-09-24'
sourceUpdated: '2026-09-24T22:16:59.480'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-43958'
references:
  - url: 'https://access.redhat.com/errata/RHSA-2026:33731'
    label: secalert@redhat.com
  - url: 'https://access.redhat.com/errata/RHSA-2026:34155'
    label: secalert@redhat.com
  - url: 'https://access.redhat.com/errata/RHSA-2026:34156'
    label: secalert@redhat.com
  - url: 'https://access.redhat.com/errata/RHSA-2026:68702'
    label: secalert@redhat.com
  - url: 'https://access.redhat.com/errata/RHSA-2026:71600'
    label: secalert@redhat.com
  - url: 'https://access.redhat.com/security/cve/CVE-2026-43958'
    label: secalert@redhat.com
  - url: 'https://bugzilla.redhat.com/show_bug.cgi?id=2460932'
    label: secalert@redhat.com
  - url: >-
      https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-43958.json
  - url: 'https://www.cve.org/CVERecord?id=CVE-2026-43958'
  - url: 'https://nvd.nist.gov/vuln/detail/CVE-2026-43958'
tags:
  - nvd
  - cve.org
  - csaf
  - vex
  - red-hat
ssvc:
  exploitation: none
  automatable: 'no'
  technicalImpact: total
  timestamp: '2026-06-02T15:36:15.651344Z'
epss: 0.0019
epssPercentile: 0.07674
ingestedAt: '2026-07-01T09:50:45.877Z'
---

## Overview

A flaw was found in rrdcached, a component of rrdtool. A local attacker with access to a rrdcached socket can exploit a stack-based buffer overflow by sending an oversized CREATE request. This vulnerability can lead to a denial of service by crashing the daemon or potentially allow for arbitrary code execution, impacting the integrity and confidentiality of data.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.

## Vendor advisories

- **RHSA-2026:68702** · Red Hat · fixed in: Red Hat Enterprise Linux AppStream EUS (v. 10.0) · released 2026-09-17 · [advisory](https://access.redhat.com/errata/RHSA-2026:68702)
- **RHSA-2026:33731** · Red Hat · fixed in: Red Hat Enterprise Linux AppStream (v. 10), Red Hat Enterprise Linux CodeReady Linux Builder (v. 10) · released 2026-06-30 · [advisory](https://access.redhat.com/errata/RHSA-2026:33731)
- **RHSA-2026:34155** · Red Hat · fixed in: Red Hat Enterprise Linux AppStream (v. 8), Red Hat Enterprise Linux CRB (v. 8) · released 2026-07-01 · [advisory](https://access.redhat.com/errata/RHSA-2026:34155)
- **RHSA-2026:34156** · Red Hat · fixed in: Red Hat Enterprise Linux AppStream (v. 9), Red Hat Enterprise Linux CodeReady Linux Builder (v. 9) · released 2026-07-01 · [advisory](https://access.redhat.com/errata/RHSA-2026:34156)
- **Red Hat VEX** · Moderate · affected: Red Hat Enterprise Linux 6, Red Hat Enterprise Linux 7 · no fix planned: Red Hat Enterprise Linux 6, Red Hat Enterprise Linux 7 · updated 2026-09-24 · [vex](https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-43958.json)
- **RHSA-2026:71600** · Red Hat · fixed in: Red Hat Enterprise Linux AppStream EUS (v.9.6) · released 2026-09-24 · [advisory](https://access.redhat.com/errata/RHSA-2026:71600)
