CVE-2026-55209 with a CVSS score of 9.8 is a critical vulnerability affecting resdata versions < 6.2.9 in resdata that allows attackers to read arbitrary files via Classic Buffer Overflow, Improper Validation of Array Index, NULL Pointer Dereference, and Out-of-bounds Read. This flaw type affects the input validation layer in GRDECL file parsing used by resdata in networking contexts like web services. Attackers can exploit this vulnerability without user interaction, requiring no privileges or user intervention to execute the attack. The business impact is severe as it allows attackers to access sensitive data and potentially disrupt critical systems.
We recommend you to update resdata to version 6.2.9.[/subscribe_to_unlock_form]
CVE-2026-55209 with a CVSS score of 9.8 is a critical vulnerability affecting resdata versions < 6.2.9 in resdata that allows attackers to read arbitrary files via Classic Buffer Overflow, Improper Validation of Array Index, NULL Pointer Dereference, and Out-of-bounds Read. This flaw type affects the input validation layer in GRDECL file parsing used by resdata in networking contexts like web services. Attackers can exploit this vulnerability without user interaction, requiring no privileges or user intervention to execute the attack. The business impact is severe as it allows attackers to access sensitive data and potentially disrupt critical systems.
We recommend you to update resdata to version 6.2.9.[emaillocker id="1283"]
The following reports contain further technical details:
[/emaillocker]