CVE Published: 06/05/2024 |
CVE Updated: 02/08/2024 |
CVE Year: 2024 Source: glibc |
Vendor: The GNU C Library |
Product: glibc Status : PUBLISHED
CVE-2024-33599 Description
nscd: Stack-based buffer overflow in netgroup cache
If the Name Service Cache Daemon\'s (nscd) fixed size cache is exhausted
by client requests then a subsequent client request for netgroup data
may result in a stack-based buffer overflow. This flaw was introduced
in glibc 2.15 when the cache was added to nscd.
This vulnerability is only present in the nscd binary.