CVE-2026-34253: Red Hat Enterprise Linux 6

High severity, CVSS 8.2. EPSS: 0.7% chance of exploitation in the next 30 days.

A buffer underflow vulnerability has been identified in the ogg123 utility from the vorbis-tools 1.4.3 package in function remotethread in remote.c. This vulnerability occurs in the remote control functionality when processing malformed input, leading to a stack buffer underflow that can cause application crashes and potentially allow code execution.

Affected products

Published 2026-05-15. Last modified 2026-07-15.