A single unauthenticated packet crashes TDengine's taosd through an integer underflow
Ridge Security disclosed CVE-2026-42542, an integer underflow that lets one unauthenticated packet to TCP/6030 crash TDengine's taosd process. Repeated packets keep it in a restart loop, and TDengine fixed it in version 3.4.1.6.
Reality
- Evidence55
- Adoption
- Insufficient
- Hype gap+10
- Incentives40
- Confidence55