It was discovered that Gawk incorrectly handled memory when processing input using the getline redirection. An attacker could possibly use this issue to cause a denial of service. (CVE-2026-40467)
It was discovered that Gawk incorrectly handled certain integer calculations when allocating memory. An attacker could possibly use this issue to cause a denial of service or overwrite heap memory with attacker-controlled data. (CVE-2026-40468)
It was discovered that Gawk incorrectly handled certain integer calculations when performing substitutions. An attacker could possibly use this issue to cause a denial of service. (CVE-2026-40469)
It was discovered that Gawk incorrectly handled memory when reading directory entries. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. This issue only affected Ubuntu 26.04 LTS. (CVE-2026-40553)
1:5.1.0-1ubuntu0.21:5.2.1-2ubuntu0.11:5.3.2-1ubuntu1.11:4.0.1+dfsg-2.1ubuntu2+esm21:4.1.3+dfsg-0.1ubuntu0.1~esm21:4.1.4+dfsg-1ubuntu0.1~esm21:5.0.1+dfsg-1ubuntu0.1+esm1