CVE-2026-3904 | GNU C Library up to 2.36 NSS-backed memcmp race condition (Nessus ID 302199 / WID-SEC-2026-0695)
A vulnerability was found in GNU C Library up to 2.36. It has been classified as problematic. This vulnerability affects the function memcmp of the component NSS-backed. Performing a manipulation results in race condition within a thread.
This vulnerability is reported as CVE-2026-3904. The attack requires a local approach. No exploit exists.
Upgrading the affected component is recommended.