CVE-2026-102010
A flaw was found in GCC. When an application calls the erase_if function on a binary heap priority queue in libstdc++, the library reallocates storage but fails to update its internal entry pointer. An attacker capable of triggering this operation can exploit this use-after-free condition, leading to a Denial of Service (DoS) via an application crash or potential memory corruption.
- Published Sep 28, 2026
- CVSS 7.0 high
- 0.2% chance of exploitation in the next 30 days (EPSS)
- A fix is available