CVE-2024-33602

May 6, 2024, 8:15 p.m.

Received
CVE has been recently published to the CVE List and has been received by the NVD.

Products

glibc

  • 2.15

Source

3ff69d7a-14f2-4f67-a097-88dee7810d18

Tags

CVE-2024-33602 details

Published : May 6, 2024, 8:15 p.m.
Last Modified : May 6, 2024, 8:15 p.m.

Description

nscd: netgroup cache assumes NSS callback uses in-buffer strings The Name Service Cache Daemon's (nscd) netgroup cache can corrupt memory when the NSS callback does not store all strings in the provided buffer. The flaw was introduced in glibc 2.15 when the cache was added to nscd. This vulnerability is only present in the nscd binary.

CVSS Score

1 2 3 4 5 6 7 8 9 10

Weakness

Weakness Name Description

References

URL Source
https://sourceware.org/git/?p=glibc.git;a=blob;f=advisories/GLIBC-SA-2024-0008 3ff69d7a-14f2-4f67-a097-88dee7810d18
This website uses the NVD API, but is not approved or certified by it.