libre: Integer overflow in websock_decode() masked frame length check leads to heap buffer overflow (CVE-2026-50161) | HOL Guard CVE