Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

AWS C Event Stream Out-of-Bounds Write Vulnerability

openSUSE-SU-2026:20477-1
Summary

AWS C Event Stream has a security issue that could allow hackers to execute unintended code by sending a specially crafted message. This update fixes the problem, so it's recommended to install the latest version to stay secure.

What to do
  • Update aws-c-event-stream to version 0.4.2-bp160.2.1.
Affected software
VendorProductAffected versionsFix available
– aws-c-event-stream <= 0.4.2-bp160.2.1 0.4.2-bp160.2.1
Original title
Security update for aws-c-event-stream
Original description
This update for aws-c-event-stream fixes the following issues:

Changes in aws-c-event-stream:

- CVE-2026-5190: Fixed a out-of-bounds write caused by crafted event-stream messages (bsc#1261298)
Published: 8 Apr 2026 · Updated: 10 Apr 2026 · First seen: 10 Apr 2026