Report: CVE-2026-6843 - Nano: nano: format string vulnerability leads to denial of service

Report: CVE-2026-6843 - Nano: nano: format string vulnerability leads to denial of service

CVE ID :CVE-2026-6843 Published : 22 Apr 2026, 8:30 a.m. | 35 minutes ago Description :A flaw was found in nano. A local user could exploit a format string vulnerability in the `statusline()` function. By creating a directory with a name containing `printf` specifiers, the application attempts to display this name, leading to a segmentation fault (SEGV). This results in a Denial of Service (DoS) for the `nano` application. Severity: 5.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
Attack Vector: local
Impact: Denial of Service