chiprook
← Security
SecuritySeptember 26, 2026, 09:25

TDengine CVE-2026-42542: one packet crashes taosd unauthenticated

Ridge Security disclosed CVE-2026-42542 in TDengine: a single unauthenticated packet to TCP/6030 triggers an integer underflow and crashes the taosd process. Versions 3.4.0.0 through 3.4.1.5 are affected; the fix ships in 3.4.1.6. Only denial of service is confirmed, with no evidence of RCE or active exploitation.

TDengine CVE-2026-42542: one packet crashes taosd unauthenticated
#TDengine
Read next
Security

Metabase CVE-2026-72898: unauthenticated SQL injection exposes the data warehouse

Security

CVE-2026-76461: SQL injection in Cisco email gateway grants root

Security

ZoomEye finds 132,158 exposed Magento stores amid CVE-2026-75650

Security

F5 BIG-IP APM: critical CVE-2026-94127 flaw is already exploited