AVIS DU CERT-FR: Vulnerability in GNU LIBC

  • Reference: CERTFR-2023-AVI-0804
  • Title: Vulnerability in GNU LIBC
  • First Version Date: October 5, 2023
  • Last Version Date: October 5, 2023
  • Sources: Red Hat Security Advisory CVE-2023-4911 dated October 3, 2023; Debian Security Bulletin dsa-5514 dated October 3, 2023; Sourceware Security Bulletin 1056e5b4c3f2d90ed2b4a55f96add28da2f4c8fa
  • Attachments: None

Table 1: Document Management Detailed version control is available at the end of this document.

RISKS Privilege Escalation

AFFECTED SYSTEMS glibc without the latest security patch

SUMMARY A vulnerability has been discovered in GNU LIBC, allowing an attacker to trigger privilege escalation.

SOLUTION Refer to the publisher’s security bulletin for obtaining patches (see Documentation section).

DOCUMENTATION

  1. Red Hat Security Advisory CVE-2023-4911 dated October 3, 2023
  2. Debian Security Bulletin dsa-5514 dated October 3, 2023
  3. Sourceware Security Bulletin 1056e5b4c3f2d90ed2b4a55f96add28da2f4c8fa
  4. CVE Reference CVE-2023-4911

https://www.cert.ssi.gouv.fr/avis/CERTFR-2023-AVI-0804/


Posted

in

by

Tags: