CYBER CODE RED

Get real-time updates on Telegram

Verified

CVE-2026-75820: Aspell 0 to before 0.60.8.3

Affected technology

Aspell · 0 to before 0.60.8.3
GNU

Component: WritableDict::add()
Function: in
File: modules/speller/default/writable.cpp

Attack conditions (Vendor/CNA, CVSS 4.0): Local · No privileges required · Active user interaction

What an attacker can do

An attacker can exploit this by convincing a user to run aspell with a crafted personal wordlist containing such a word, resulting in denial of service. Vendor/CNA’s CVSS 4.0 assessment (base score 1.8/10) rates confidentiality and integrity impact as none; availability impact as low.

Published

CWE
CWE-190
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2026-75820.html