Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-2961

Опубликовано: 17 апр. 2024
Источник: ubuntu
Приоритет: medium
EPSS Критический
CVSS3: 7.3

Описание

The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT character set, which may be used to crash an application or overwrite a neighbouring variable.

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

not-affected

2.19-0ubuntu6.15+esm3
esm-infra/focal

DNE

focal

DNE

jammy

DNE

mantic

DNE

noble

DNE

oracular

DNE

plucky

DNE

trusty/esm

released

2.19-0ubuntu6.15+esm3

Показывать по

РелизСтатусПримечание
devel

released

2.39-0ubuntu8.1
esm-infra/bionic

released

2.27-3ubuntu1.6+esm2
esm-infra/focal

not-affected

2.31-0ubuntu9.15
esm-infra/xenial

released

2.23-0ubuntu11.3+esm6
focal

released

2.31-0ubuntu9.15
jammy

released

2.35-0ubuntu3.7
mantic

released

2.38-1ubuntu6.2
noble

released

2.39-0ubuntu8.1
oracular

released

2.39-0ubuntu8.1
plucky

released

2.39-0ubuntu8.1

Показывать по

EPSS

Процентиль: 100%
0.92127
Критический

7.3 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
redhat
около 1 года назад

The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT character set, which may be used to crash an application or overwrite a neighbouring variable.

CVSS3: 7.3
nvd
около 1 года назад

The iconv() function in the GNU C Library versions 2.39 and older may overflow the output buffer passed to it by up to 4 bytes when converting strings to the ISO-2022-CN-EXT character set, which may be used to crash an application or overwrite a neighbouring variable.

CVSS3: 7.3
debian
около 1 года назад

The iconv() function in the GNU C Library versions 2.39 and older may ...

suse-cvrf
около 1 года назад

Security update for glibc-livepatches

suse-cvrf
около 1 года назад

Security update for glibc

EPSS

Процентиль: 100%
0.92127
Критический

7.3 High

CVSS3

Уязвимость CVE-2024-2961