CVE-2026-39856 | mtrojnar osslsigncode up to 2.12 pe_page_hash_calc PointerToRawData/SizeOfRawData out-of-bounds (GHSA-rjrx-chvw-8jw8 / Nessus ID 305825)
A vulnerability categorized as problematic has been discovered in mtrojnar osslsigncode up to 2.12. Affected is the function pe_page_hash_calc. Such manipulation of the argument PointerToRawData/SizeOfRawData leads to out-of-bounds read.
This vulnerability is referenced as CVE-2026-39856. The attack can only be performed from a local environment. No exploit is available.
It is advisable to upgrade the affected component.