ArduinoCore-AVR: Stack-Based Buffer Overflow in String float/double concatenation handler (CVE-2026-48490) | HOL Guard CVE