CVE-2026-1766
published 2026-06-16CVE-2026-1766: A flaw was found in GNOME localsearch (previously known as tracker-miners) MP3 Extractor, specifically within the tracker-extract-mp3 component. This heap…
PriorityP424medium6.1CVSS 3.1
AVLACLPRNUIRSUCLINAH
EPSS
0.16%
5.4th percentile
A flaw was found in GNOME localsearch (previously known as tracker-miners) MP3 Extractor, specifically within the tracker-extract-mp3 component. This heap buffer overflow vulnerability occurs when processing specially crafted MP3 files containing malformed ID3v2.3 COMM (Comment) tags. An attacker could exploit this by providing a malicious MP3 file, leading to a denial of service (DoS), which causes an application crash, and potentially disclosing sensitive information from the heap memory.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | localsearch | < localsearch 3.8.2-12 (forky) | localsearch 3.8.2-12 (forky) |
| debian | tracker-miners | < localsearch 3.8.2-12 (forky) | localsearch 3.8.2-12 (forky) |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
CVSS provenance
nvdv3.16.1MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H
vendor_redhat5.6MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
tracker-miners vulnerabilities
vendor_ubuntu·2026-02-05
CVE-2026-1764 tracker-miners vulnerabilities
Title: tracker-miners vulnerabilities
Summary: tracker-miners could be made to crash or run programs as your login if it
opened a specially crafted file.
Fatih Çelik discovered that tracker-miners incorrectly handled certain
malformed MP3 files. An attacker could use this issue to cause
tracker-miners to crash, resulting in a denial of service, or possibly
execute arbitrary code.
Instructions: After a standard system update you need to restart your session to make all
the necessary changes.
Red Hat
localsearch: tracker-miners: GNOME localsearch MP3 Extractor: Denial of Service and information disclosure via malformed MP3 files.
vendor_redhat·2026-02-02·CVSS 5.6
CVE-2026-1766 [MEDIUM] CWE-805 localsearch: tracker-miners: GNOME localsearch MP3 Extractor: Denial of Service and information disclosure via malformed MP3 files.
localsearch: tracker-miners: GNOME localsearch MP3 Extractor: Denial of Service and information disclosure via malformed MP3 files.
A flaw was found in GNOME localsearch (previously known as tracker-miners) MP3 Extractor, specifically within the tracker-extract-mp3 component. This heap buffer overflow vulnerability occurs when processing specially crafted MP3 files containing malformed ID3v2.3 COMM (Comment) tags. An attacker could exploit this by providing a malicious MP3 file, leading to a denial of service (DoS), which causes an application crash, and potentially disclosing sensitive information from the heap memory.
Statement: This vulnerability has MODERATE impact. A heap buffer overflow in GNOME localsearch's MP3 extractor (`tracker-extract-mp3`) can lead to a denial of service and
Debian
CVE-2026-1766: localsearch
vendor_debian·2026
CVE-2026-1766 CVE-2026-1766: localsearch
forky: resolved (fixed in 3.8.2-12)
sid: resolved (fixed in 3.8.2-12)
GHSA
A flaw was found in GNOME localsearch (previously known as tracker-miners) MP3 Extractor, specifically within the tracker-extract-mp3 component.
ghsa_unreviewed·2026-06-16
CVE-2026-1766 [MEDIUM] CWE-805 A flaw was found in GNOME localsearch (previously known as tracker-miners) MP3 Extractor, specifically within the tracker-extract-mp3 component.
A flaw was found in GNOME localsearch (previously known as tracker-miners) MP3 Extractor, specifically within the tracker-extract-mp3 component. This heap buffer overflow vulnerability occurs when processing specially crafted MP3 files containing malformed ID3v2.3 COMM (Comment) tags. An attacker could exploit this by providing a malicious MP3 file, leading to a denial of service (DoS), which causes an application crash, and potentially disclosing sensitive information from the heap memory.
OSV
CVE-2026-1766: [Heap Buffer Overflow in GNOME localsearch MP3 Extractor (ID3v2
osv·2026-02-03
CVE-2026-1766 CVE-2026-1766: [Heap Buffer Overflow in GNOME localsearch MP3 Extractor (ID3v2
[Heap Buffer Overflow in GNOME localsearch MP3 Extractor (ID3v2.3 COMM Tags)]
No detection rules found.
No public exploits indexed.
Wiz
CVE-2026-1766 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 5.3
CVE-2026-1766 [MEDIUM] CVE-2026-1766 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-1766 :
Linux Debian vulnerability analysis and mitigation
[Heap Buffer Overflow in GNOME localsearch MP3 Extractor (ID3v2.3 COMM Tags)]
Source : NVD
Published February 3, 2026
CNA Score N/A
Affected Technologies
Linux Debian
Linux Ubuntu
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) N/A
Exploitation Probability (EPSS) N/A
Affected packages and libraries
tracker-miner-files
tracker-miners
Sources
NVD
Debian 11, 12, 13 Severity MEDIUM No Fix Added at: Feb 04, 2026
Debian 14 Has Fix Added at: Feb 04, 2026
Echo No Fix Added at: Feb 04, 2026
Red Hat 8, 9, 10 Severity MEDIUM No Fix Added at: Feb 04, 2026
Ubuntu 18.04, 20.04 Severity MEDIUM No Fix Added at: Feb 20, 2026
Bugzilla
CVE-2026-1764 CVE-2026-1765 CVE-2026-1766 CVE-2026-1767 tracker-miners: various flaws [fedora-42]
bugzilla·2026-02-03
CVE-2026-1764 [MEDIUM] CVE-2026-1764 CVE-2026-1765 CVE-2026-1766 CVE-2026-1767 tracker-miners: various flaws [fedora-42]
CVE-2026-1764 CVE-2026-1765 CVE-2026-1766 CVE-2026-1767 tracker-miners: various flaws [fedora-42]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Discussion:
Bug reports for this component on Red Hat Bugzilla are not actively monitored. Please consider reporting your issue directly to GNOME at https://gitlab.gnome.org/GNOME/ to improve the chances that your issue will be resolved. This issue should only be kept open if it:
1. Relates to Fedora packaging or integration with other Fedora components
2. Is required for Fedora release processes, such as blocker bugs and freeze exceptions
If this issue isn't needed fo
Bugzilla
CVE-2026-1766 localsearch: tracker-miners: GNOME localsearch MP3 Extractor: Denial of Service and information disclosure via malformed MP3 files.
bugzilla·2026-02-02·CVSS 6.1
CVE-2026-1766 [MEDIUM] CVE-2026-1766 localsearch: tracker-miners: GNOME localsearch MP3 Extractor: Denial of Service and information disclosure via malformed MP3 files.
CVE-2026-1766 localsearch: tracker-miners: GNOME localsearch MP3 Extractor: Denial of Service and information disclosure via malformed MP3 files.
Vulnerability Report: Heap Buffer Overflow in GNOME localsearch MP3 Extractor (ID3v2.3 COMM Tags)
Project: https://gitlab.gnome.org/GNOME/localsearch
Component: tracker-extract-mp3
Vulnerability Type: Heap Buffer Overflow (Read)
Description
A heap buffer overflow vulnerability exists in the get_id3v23_tags function of src/extractor/tracker-extract-mp3.c when processing COMM (Comment) frames. The code incorrectly calculates the buffer offset without verifying if it exceeds the frame size, leading to an underflow in the length calculation passed to id3v2_text_to_utf8. This results in g_convert reading out of bounds.
Root Cause Analysis
The vulne
2026-06-16
Published