CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

GNU security advisory (AV26-923)

unknownCVE-2026-91752
Serial number: AV26-923 Date: September 15, 2026 As of September 15, 2026, GNU is affected by vulnerabilities in the following product: libextractor Prior to v1.15 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. libextractor CVE-2026-91752: GNU libextractor Stack Overflow via OLE2 GNU Libextractor

Details

Source
Canadian Centre for Cyber Security (CA · national-cert · site)
Severity
unknown
Published
2026-09-15
Exploitation
Not in CISA KEV at last sync

Original advisory: https://cyber.gc.ca/en/alerts-advisories/gnu-security-advisory-av26-923

Exploitation outlook

EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.

Referenced CVEs

CVECSIRTS overviewExternal
CVE-2026-91752coverage & exploitation statusNVD · CVE.org

Same CVEs, other sources

How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.

More from Canadian Centre for Cyber Security