ZeroHour

CVE-2024-33600

CVSS 3.1
5.9 medium
EPSS
1%p67
Published
()
Modified
Description

nscd: Null pointer crashes after notfound response If the Name Service Cache Daemon's (nscd) cache fails to add a not-found netgroup response to the cache, the client request can result in a null pointer dereference. This flaw was introduced in glibc 2.15 when the cache was added to nscd. This vulnerability is only present in the nscd binary.

Vendors
gnudebiannetapp
Products
glibc, debian linux, active iq unified manager, h300s firmware, h500s firmware, h700s firmware, h410s firmware, h410c firmware, h610c firmware, h610s firmware, h615c firmware, hci bootstrap os
Weakness
CWE-476
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.