CVE-2023-4911
CVSS V2 None
CVSS V3 None
Description
A buffer overflow was discovered in the GNU C Library's dynamic loader ld.so while processing the GLIBC_TUNABLES environment variable. This issue could allow a local attacker to use maliciously crafted GLIBC_TUNABLES environment variables when launching binaries with SUID permission to execute code with elevated privileges.
Overview
- CVE ID
- CVE-2023-4911
- Assigner
- redhat
- Vulnerability Status
- PUBLISHED
- Published Version
- 2023-10-03T17:25:08.434Z
- Last Modified Date
- 2024-05-23T19:33:10.799Z
Weakness Enumerations
References
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-4911 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-4911 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-24 19:57:46 | Added to TrackCVE |