lzma_index_decoder of the component Compression Handler. Performing a manipulation results in heap-based buffer overflow.This vulnerability was named CVE-2026-34743. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.