The UAF (CVE-2026-33150) is triggered by pthread_create failure or io_uring_queue_init_params failure, not by the CVE-2026-33179 sub-bugs. Container resource limits (cgroup pids.max, RLIMIT_NPROC) reliably cause...
| Vendor | Product | Versions |
|---|---|---|
| libfu | libfu | >= 3.18.0, < 3.18.2 |
Updated description with new triggering conditions, added vendor and product corrections, marked exploit availability and active exploitation, and included new tags.
Updated description with new triggering conditions for the UAF and added new CWE, marked exploit as available and actively exploited, and confirmed patch version.
Initial creation