CVE-2026-37198: Gtp Unbounded Length Memcpycve-2026-37198-gtp-unbounded-length-memcpy
A length extracted directly from a data buffer via pointer dereference is passed to memcpy without bounds checking against the maximum destination buffer size, leading to potential buffer overflow.