CVE-2026-42542 PUBLISHED

TDengine has an integer underflow in uvConnMayGetUserInfo() allows unauthenticated remote crash (DoS)

Assigner: GitHub_M
Reserved: 28.04.2026 Published: 10.06.2026 Updated: 10.06.2026

TDengine is an open source, time-series database optimized for Internet of Things devices. In versions 3.4.0.0 through 3.4.1.5, an unauthenticated remote attacker can crash the taosd server process by sending a single crafted RPC packet. No credentials or prior session state are required. Version 3.4.1.6 fixes the issue.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS Score: 7.5

Product Status

Vendor taosdata
Product TDengine
Versions
  • Version >= 3.4.0.0, < 3.4.1.6 is affected

References

Problem Types

  • CWE-191: Integer Underflow (Wrap or Wraparound) CWE